📦 Buddypress

by Buddypress

🔍 What is Buddypress?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2025-23798

HIGH CVSS 7.1 Jan 22, 2025

This reflected cross-site scripting (XSS) vulnerability in the Mass Messaging in BuddyPress WordPress plugin allows attackers to inject malicious scripts into web pages. When a user visits a specially...

CVE-2021-21389

HIGH CVSS 8.1 Mar 26, 2021

This vulnerability in BuddyPress allows non-privileged users to escalate their privileges to administrator level by exploiting an issue in the REST API members endpoint. It affects BuddyPress installa...

CVE-2024-3974

MEDIUM CVSS 6.4 May 14, 2024

This stored XSS vulnerability in BuddyPress allows authenticated users with subscriber-level permissions or higher to inject malicious scripts into web pages via the 'user_name' parameter. The injecte...