All 5 CVE vulnerabilities found in BuddyForms, with AI-generated Chinese analysis, references, and POCs.
Vendor: ThemeKraft
| CVE ID | Title | CVSS | Severity | Published |
|---|---|---|---|---|
| CVE-2025-62973 | WordPress BuddyForms plugin <= 2.9.0 - Broken Access Control vulnerability CWE-862 | 9.1AI | CriticalAI | 2025-10-27 |
| CVE-2025-32151 | WordPress BuddyForms Plugin <= 2.9.0 - Local File Inclusion vulnerability CWE-98 | 7.5 | High | 2025-04-04 |
| CVE-2024-47377 | WordPress BuddyForms plugin <= 2.8.12 - Cross Site Scripting (XSS) vulnerability CWE-79 | 5.9 | Medium | 2024-10-05 |
| CVE-2024-32830 | WordPress buddyforms plugin <= 2.8.8- Arbitrary File Read and SSRF vulnerability CWE-22 | 8.6 | High | 2024-05-17 |
| CVE-2024-30198 | WordPress Buddyforms plugin <= 2.8.5 - Reflected Cross Site Scripting (XSS) vulnerability CWE-79 | 5.8 | Medium | 2024-03-27 |
All 5 known CVE vulnerabilities affecting BuddyForms with full Chinese analysis, references, and POCs where available.