CVE-2024-4886

The contains an IDOR vulnerability that allows a user to comment on a private post by manipulating the ID included in the request
References
Configurations

Configuration 1 (hide)

cpe:2.3:a:buddyboss:buddyboss_platform:*:*:*:*:*:wordpress:*:*

History

No history.

Information

Published : 2024-06-05 06:15

Updated : 2024-06-11 17:14


NVD link : CVE-2024-4886

Mitre link : CVE-2024-4886

CVE.ORG link : CVE-2024-4886


JSON object : View

Products Affected

buddyboss

  • buddyboss_platform
CWE
CWE-639

Authorization Bypass Through User-Controlled Key