CVE-2024-12767

Publication date

2025-05-15 20:09:40

Family

WPScan

State

PUBLISHED

Description

The buddyboss-platform WordPress plugin before 2.7.60 lacks proper access controls and allows a logged-in user to view comments on private posts