b
bbPress
Security Risk Profile
64
/100
highSecurity Risk Score
Comprehensive risk assessment based on 8 vulnerabilities, EPSS scores, exploitation status, and remediation availability.
📅 Data spans from June 15, 2007 to present
8
Total CVEs
3
Critical+High
0
Exploited
1
Unpatched
Threat Assessment
Avg CVSS
6.6
Base severity
Avg EPSS
0%
Exploit probability
Unpatched
1
Critical/High
Risk Level
64/100
high
Severity Distribution
Critical
1High
2Medium
5Low
0Exploit Likelihood
>50% chance
020-50%
05-20%
0<5%
0Age Distribution
Common Weaknesses (CWE)
1
XSS
3
2
Malicious File Upload
1
3
CSRF
1
4
Infoleak
1
5
SQL Injection
1
Most Affected Products
1. bbPress bbPress5
2. composer/bbpress/bbpress3
3. bbPress Bbpress Wordpress2
4. bbPress Inline Image Upload1
Recent Vulnerabilities
See more →CVE-2025-2006
CVSS 8.8high
Inline Image Upload for BBPress <= 1.1.19 - Authenticated (Subscriber+) Arbitrary File Upload
Mar 29, 2025🔧 No Patch
CVE-2025-1435
CVSS 6.3medium
bbPress <= 2.6.11 - Cross-Site Request Forgery to Limited Privilege Escalation
Mar 5, 2025🔧 No Patch
CVE-2020-13693
CVSS 9.8critical
May 28, 2020
CVE-2020-13487
CVSS 4.8medium
May 26, 2020🔧 No Patch
CVE-2011-1150
CVSS 6.1medium
Feb 5, 2020🔧 No Patch
CVE-2011-3710
CVSS 5.0medium
Sep 23, 2011🔧 No Patch
CVE-2007-3244
CVSS 7.5high
Jun 15, 2007
CVE-2007-3243
CVSS 4.3medium
Jun 15, 2007🔧 No Patch
Monitor bbPress in Real-Time
Get instant alerts when new vulnerabilities are discovered. Stay ahead of security threats with SecAlerts.