
CVE-2025-1909 - Critical authentication bypass in BuddyBoss Platform Pro (≤2.7.01). Apple OAuth flaw lets attackers log in as any user, including admins. CVSS 9.8. Unpatched. Disable OAuth or update immediately. #CVE #WordPress #infosec #CVEAlert #Poc More CVE, YARN, POC, SIGMA
Post summary
The tweet announces a CVE-2025-1909 authentication bypass in BuddyBoss Platform Pro, gives technical details, and immediately recommends disabling OAuth or updating as a patch.
