Known vulnerabilities in BuddyPress

Software: BuddyPress
Software CPE: cpe:2.3:a:buddypressthemers:buddypress:*:*:*:*:*:wordpress:*:*
Total vulnerabilities: 2
Public exploits: 0
Known exploited (KEV): 0
Highest CVSSv4 Score: 8.8

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting BuddyPress BuddyPress is affected by 2 known vulnerabilities: 2 medium Critical High Medium Low

Vulnerabilities (2)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU99649 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
CVE-2024-10011
CWE-22 Medium
No
No
14.2.1 04.11.2024 SB2024110414
#VU25730 - Exposure of sensitive information to an unauthorized actor
CVE-2020-5244
CWE-200 Medium
No
No
5.1.2 02.03.2020 SB2020030210