Home/Product/kainelabs youzify
Product

kainelabs youzify

13 known vulnerabilities across versions
Vulnerabilities are listed by affected version. Select any CVE for the full briefing and its intelligence graph.
CVE-2024-13370
<= 1.3.3
The Youzify - BuddyPress Community, User Profile, Social Network & Membership Plugin for WordPress plugin for WordPress is vulnera
6.5MEDIUM
CVE-2024-13368
<= 1.3.3
The Youzify - BuddyPress Community, User Profile, Social Network & Membership Plugin for WordPress plugin for WordPress is vulnera
4.3MEDIUM
CVE-2024-12113
< 1.3.3
The Youzify - BuddyPress Community, User Profile, Social Network & Membership Plugin for WordPress plugin for WordPress is vulnera
4.3MEDIUM
CVE-2024-39635
< 1.2.8
Missing Authorization vulnerability in KaineLabs Youzify allows Exploiting Incorrectly Configured Access Control Security Levels.T
5.4MEDIUM
CVE-2024-9067
<= 1.3.0
The Youzify - BuddyPress Community, User Profile, Social Network & Membership Plugin for WordPress plugin for WordPress is vulnera
4.3MEDIUM
CVE-2024-8987
<= 1.3.0
The Youzify - BuddyPress Community, User Profile, Social Network & Membership Plugin for WordPress plugin for WordPress is vulnera
6.4MEDIUM
CVE-2024-37494
< 1.2.6
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in KaineLabs Youzify.This issue
8.5HIGH
CVE-2024-4742
<= 1.2.5
The Youzify - BuddyPress Community, User Profile, Social Network & Membership Plugin for WordPress plugin for WordPress is vulnera
6.5MEDIUM
CVE-2024-2864
<= 1.2.5
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in KaineLabs Youzify - Buddypre
7.3HIGH
CVE-2023-47191
< 1.2.3
Authorization Bypass Through User-Controlled Key vulnerability in KaineLabs Youzify - BuddyPress Community, User Profile, Social N
6.5MEDIUM
CVE-2023-0059
< 1.2.2
The Youzify WordPress plugin before 1.2.2 does not validate and escape some of its shortcode attributes before outputting them bac
5.4MEDIUM
CVE-2022-1950
< 1.2.0
The Youzify WordPress plugin before 1.2.0 does not sanitise and escape a parameter before using it in a SQL statement via an AJAX
9.8CRITICAL
CVE-2021-24443
< 1.0.7
The About Me widget of the Youzify - BuddyPress Community, User Profile, Social Network & Membership WordPress plugin before 1.0.7
5.4MEDIUM
threatengine.sh