Medium
CVSS 4.3
Overview
The BuddyPress Docs WordPress plugin before 2.2.5 lacks proper access controls and allows a logged in user to view and download files belonging to another user
The BuddyPress Docs WordPress plugin before 2.2.5 lacks proper access controls a...
The BuddyPress Docs WordPress plugin before 2.2.5 lacks proper access controls and allows a logged in user to view and download files belonging to another user
This vulnerability is rated 🟡 MEDIUM.
Recommended actions: