PT-2026-75978 · Packagist · Buddypress/Buddypress

Publicado

2026-06-10

·

Atualizado

2026-06-10

CVSS v3.1

8.1

Alta

VetorAV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:N
BuddyPress 14.4.0 contains an insecure direct object reference vulnerability in the messages REST API that allows authenticated attackers to access arbitrary private message threads by supplying a user id parameter in the request. Attackers can pass another user's identifier to the get item permissions check method, which validates the supplied user id instead of the logged-in user and is reused by the update and delete handlers, to read, reply to, or delete any user's private messages.

Correção

IDOR

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

GHSA-J3J5-5M8V-7GVC

Produtos afetados

Buddypress/Buddypress