Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%
Vulnerability List
Found 22 results
CVE IDTitleVendorProductSeverityCVSS ScorePublished AtAI Analysis
CVE-2026-1559 Youzify <= 1.3.6 - Authenticated (Subscriber+) Stored Cross-Site Scripting via 'checkin_place_id' Parameter youzifyYouzify – BuddyPress Community, User Profile, Social Network & Membership Plugin for WordPress Medium 6.4 2026-04-18 01:26:05 Deep Dive
CVE-2025-11606 iPynch Social Network Website Search sql injection iPynchSocial Network Website Medium 6.3 2025-10-11 15:02:06 Deep Dive
CVE-2024-13529 SocialV - Social Network and Community BuddyPress Theme <= 2.0.15 - Missing Authorization to Arbitrary File Download iqonicdesignSocialV - Social Network and Community BuddyPress Theme Medium 6.5 2025-02-04 09:21:08 Deep Dive
CVE-2024-13370 Youzify – BuddyPress Community, User Profile, Social Network & Membership Plugin for WordPress <= 1.3.3 - Missing Authorization to Authenticated (Subscriber+) Limited Options Update (save_addon_key_license) youzifyYouzify – BuddyPress Community, User Profile, Social Network & Membership Plugin for WordPress Medium 6.5 2025-01-25 07:24:20 Deep Dive
CVE-2024-13368 Youzify – BuddyPress Community, User Profile, Social Network & Membership Plugin for WordPress <= 1.3.4 - Missing Authorization to Authenticated (Subscriber+) Limited Options Update youzifyYouzify – BuddyPress Community, User Profile, Social Network & Membership Plugin for WordPress Medium 4.3 2025-01-25 07:24:17 Deep Dive
CVE-2024-12113 Youzify – BuddyPress Community, User Profile, Social Network & Membership Plugin for WordPress By KaineLabs <= 1.3.2 - Missing Authorization to Authenticated (Subscriber+) Arbitrary Review Deletion youzifyYouzify – BuddyPress Community, User Profile, Social Network & Membership Plugin for WordPress Medium 4.3 2025-01-25 07:24:16 Deep Dive
CVE-2024-9873 Community by PeepSo <= 6.4.6.1 - Authenticated (Subscriber+) Stored Cross-Site Scripting peepsoCommunity by PeepSo – Download from PeepSo.com Medium 5.4 2024-10-16 05:31:56 Deep Dive
CVE-2024-9067 Youzify – BuddyPress Community, User Profile, Social Network & Membership Plugin for WordPress <= 1.3.0 - Missing Authorization to Arbitrary (Subscriber+) Attachment Deletion youzifyYouzify – BuddyPress Community, User Profile, Social Network & Membership Plugin for WordPress Medium 4.3 2024-10-10 02:06:13 Deep Dive
CVE-2024-8987 Youzify – BuddyPress Community, User Profile, Social Network & Membership Plugin for WordPress <= 1.3.0 - Authenticated (Contributor+) Stored Cross-Site Scripting via youzify_media Shortcode youzifyYouzify – BuddyPress Community, User Profile, Social Network & Membership Plugin for WordPress Medium 6.4 2024-10-10 02:06:05 Deep Dive
CVE-2024-7426 Community by PeepSo – Social Network, Membership, Registration, User Profiles <= 6.4.6.0 - Unauthenticated Full Path Disclosure peepsoCommunity by PeepSo – Download from PeepSo.com Medium 5.3 2024-09-25 02:05:05 Deep Dive
CVE-2024-7618 Community by PeepSo – Social Network, Membership, Registration, User Profiles <= 6.4.5.0 - Authenticated (Administrator+) Stored Cross-Site Scripting via content Parameter peepsoCommunity by PeepSo – Download from PeepSo.com Medium 4.4 2024-09-10 07:30:04 Deep Dive
CVE-2024-7655 Community by PeepSo – Social Network, Membership, Registration, User Profiles <= 6.4.5.0 - Authenticated (Administrator+) Stored Cross-Site Scripting peepsoCommunity by PeepSo – Download from PeepSo.com Medium 4.4 2024-09-10 07:30:04 Deep Dive
CVE-2024-4742 Youzify – BuddyPress Community, User Profile, Social Network & Membership Plugin for WordPress <= 1.2.5 - Authenticated (Contributor+) SQL Injection youzifyYouzify – BuddyPress Community, User Profile, Social Network & Membership Plugin for WordPress Medium 6.5 2024-06-20 02:08:20 Deep Dive
CVE-2024-22158 WordPress PeepSo Core: Photos Plugin < 6.3.1.0 is vulnerable to Cross Site Scripting (XSS) PeepSoCommunity by PeepSo – Social Network, Membership, Registration, User Profiles Medium 6.5 2024-01-31 18:15:01 Deep Dive
CVE-2023-47191 WordPress Youzify Plugin <= 1.2.2 is vulnerable to Insecure Direct Object References (IDOR) KaineLabsYouzify – BuddyPress Community, User Profile, Social Network & Membership Plugin for WordPress Medium 6.5 2023-12-21 18:26:53 Deep Dive
CVE-2023-48746 WordPress Community by PeepSo Plugin <= 6.2.6.0 is vulnerable to Cross Site Scripting (XSS) PeepSoCommunity by PeepSo – Social Network, Membership, Registration, User Profiles High 7.1 2023-11-30 16:25:31 Deep Dive
CVE-2023-47850 WordPress Community by PeepSo Plugin <= 6.2.2.0 is vulnerable to Cross Site Scripting (XSS) PeepSoCommunity by PeepSo – Social Network, Membership, Registration, User Profiles Medium 6.5 2023-11-30 11:43:09 Deep Dive
CVE-2023-32092 WordPress Community by PeepSo Plugin <= 6.0.9.0 is vulnerable to Cross Site Request Forgery (CSRF) PeepSoCommunity by PeepSo – Social Network, Membership, Registration, User Profiles 高危 -2023-11-09 22:36:19 Deep Dive
CVE-2022-41633 WordPress Community by PeepSo Plugin <= 6.0.2.0 is vulnerable to Cross Site Request Forgery (CSRF) PeepSoCommunity by PeepSo – Social Network, Membership, Registration, User Profiles Medium 5.4 2023-04-04 11:12:16 Deep Dive
CVE-2022-1950 Youzify < 1.2.0 - Unauthenticated SQLi UnknownYouzify – BuddyPress Community, User Profile, Social Network & Membership Plugin for WordPress 超危 -2022-08-01 12:49:04 Deep Dive