Vulnerabilities and security researches foractivity-reactions-for-buddypress activity-reactions-for-buddypress
Direction: ascendingJun 07, 2024
Activity Reactions For Buddypress # CVE-2022-45074
- CVE, Research URL
- Home page URL
- Application
- Date
- Apr 23, 2023
- Research Description
- Cross-Site Request Forgery (CSRF) vulnerability in Paramveer Singh for Arete IT Private Limited Activity Reactions For Buddypress plugin <= 1.0.22 versions.
- Affected versions
-
Min -, max -.
- Status
-
vulnerable
Jun 10, 2024
Activity Reactions For Buddypress # CVE-2022-45075
- CVE, Research URL
- Home page URL
- Application
- Date
- -
- Research Description
- The Activity Reactions For Buddypress plugin for WordPress is vulnerable to missing authorization checks in versions up to, and including, 1.0.22 on the ai_front_smiley function. This makes it possible for subscriber-level to enable and disable reactions.
- Affected versions
-
Min -, max -.
- Status
-
vulnerable
Apr 14, 2025
Activity Reactions For Buddypress # CVE-2025-31006
- CVE, Research URL
- Home page URL
- Application
- Date
- -
- Research Description
- Activity Reactions For Buddypress [activity-reactions-for-buddypress] <= 1.0.22 (unfixed) CVE-2025-31006
- Affected versions
-
Min -, max -.
- Status
-
vulnerable