Known Vulnerabilities for BbPress by John James Jacoby
Listed below are 10 of the newest known vulnerabilities associated with "BbPress" by "John James Jacoby".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-101925 json | The bbp style pack plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'display_name (via /wp-admin/pro... | Not Provided | 2026-10-01 | 2026-10-01 |
| CVE-2026-96564 json | The SEOPress – AI SEO Plugin & On-site SEO plugin for WordPress is vulnerable to Stored Cross-Site Scripting via Author Dis... | Not Provided | 2026-10-03 | 2026-10-03 |
| CVE-2026-88912 json | The rtMedia for WordPress, BuddyPress and bbPress WordPress plugin before 4.7.12 does not check ownership before changing the... | Not Provided | 2026-09-13 | 2026-09-13 |
| CVE-2026-74010 json | Missing Authorization vulnerability in John James Jacoby bbPress allows Exploiting Incorrectly Configured Access Control Secu... | Not Provided | 2026-08-31 | 2026-09-02 |
| CVE-2026-66592 json | Unauthenticated SQL Injection in rtMedia for WordPress, BuddyPress and bbPress <= 4.7.11 versions. | Not Provided | 2026-08-20 | 2026-08-20 |
| CVE-2026-62137 json | Unauthenticated Sensitive Data Exposure in bbPress <= 2.6.14 versions. | Not Provided | 2026-09-11 | 2026-09-11 |
| CVE-2026-59551 json | Subscriber SQL Injection in rtMedia for WordPress, BuddyPress and bbPress <= 4.7.10 versions. | Not Provided | 2026-07-27 | 2026-07-27 |
| CVE-2026-59549 json | Unauthenticated SQL Injection in rtMedia for WordPress, BuddyPress and bbPress <= 4.7.10 versions. | Not Provided | 2026-07-27 | 2026-07-27 |
| CVE-2026-16482 json | The rtMedia for WordPress, BuddyPress and bbPress plugin for WordPress is vulnerable to time-based blind SQL Injection via th... | Not Provided | 2026-09-12 | 2026-09-15 |
| CVE-2026-15010 json | The bbp Style Pack plugin for WordPress is vulnerable to Stored Cross-Site Scripting in versions up to, and including, 6.4.5 ... | Not Provided | 2026-07-11 | 2026-07-13 |