Known Vulnerabilities for BbPress by John James Jacoby
Listed below are 9 of the newest known vulnerabilities associated with "BbPress" by "John James Jacoby".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-74010 json | Missing Authorization vulnerability in John James Jacoby bbPress allows Exploiting Incorrectly Configured Access Control Secu... | Not Provided | 2026-08-31 | 2026-09-02 |
| CVE-2026-66592 json | Unauthenticated SQL Injection in rtMedia for WordPress, BuddyPress and bbPress <= 4.7.11 versions. | Not Provided | 2026-08-20 | 2026-08-20 |
| CVE-2026-62137 json | Unauthenticated Sensitive Data Exposure in bbPress <= 2.6.14 versions. | Not Provided | 2026-09-11 | 2026-09-11 |
| CVE-2026-59551 json | Subscriber SQL Injection in rtMedia for WordPress, BuddyPress and bbPress <= 4.7.10 versions. | Not Provided | 2026-07-27 | 2026-07-27 |
| CVE-2026-59549 json | Unauthenticated SQL Injection in rtMedia for WordPress, BuddyPress and bbPress <= 4.7.10 versions. | Not Provided | 2026-07-27 | 2026-07-27 |
| CVE-2026-40773 json | Subscriber Broken Access Control in rtMedia for WordPress, BuddyPress and bbPress <= 4.7.9 versions. | Not Provided | 2026-06-15 | 2026-06-15 |
| CVE-2026-15287 json | The rtMedia for WordPress, BuddyPress and bbPress plugin for WordPress is vulnerable to time-based SQL Injection via the orde... | Not Provided | 2026-07-10 | 2026-07-10 |
| CVE-2026-15010 json | The bbp Style Pack plugin for WordPress is vulnerable to Stored Cross-Site Scripting in versions up to, and including, 6.4.5 ... | Not Provided | 2026-07-11 | 2026-07-13 |
| CVE-2026-10035 json | The Turnkey bbPress by WeaverTheme plugin for WordPress is vulnerable to PHP Object Injection in all versions up to, and incl... | Not Provided | 2026-08-16 | 2026-08-17 |