CVE-2024-2864: WordPress Youzify - Buddypress Moderation plugin <= 1.2.5 - Unauthenticated Cross Site Scripting (XSS) vulnerability
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in KaineLabs Youzify - Buddypress Moderation.This issue affects Youzify - Buddypress Moderation: from n/a through 1.2.5.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2024-2864?
CVE-2024-2864 is classified as a Cross-site Scripting (XSS) vulnerability, which can lead to significant security risks if exploited.
How do I fix CVE-2024-2864?
To fix CVE-2024-2864, update the Youzify - Buddypress Moderation plugin to version 1.2.6 or later.
What versions are affected by CVE-2024-2864?
CVE-2024-2864 affects Youzify - Buddypress Moderation versions up to and including 1.2.5.
What are the potential impacts of CVE-2024-2864?
The potential impacts of CVE-2024-2864 include unauthorized access to user sessions and the ability to execute malicious scripts in a user's browser.
How can I determine if my website is vulnerable to CVE-2024-2864?
You can determine if your website is vulnerable to CVE-2024-2864 by checking the version of the Youzify - Buddypress Moderation plugin installed on your site.