BuddyBoss Platform是BuddyBoss公司的一个在 WordPress 上运行在线社区的最先进的插件。 BuddyBoss 2.2.9 版本存在跨站脚本漏洞,该漏洞源于允许本地攻击者通过[name]=image.jpg参数执行恶意有效负载。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2023-32671 | 6.3 MEDIUM | BuddyBoss XSS vulnerability |
| CVE-2023-32669 | 5.4 MEDIUM | Authorization Bypass on BuddyBoss |
No comments yet