Vulnerabilities > CVE-2024-4886 - Authorization Bypass Through User-Controlled Key vulnerability in Buddyboss Platform
Attack vector
NETWORK Attack complexity
LOW Privileges required
LOW Confidentiality impact
NONE Integrity impact
LOW Availability impact
NONE Summary
The contains an IDOR vulnerability that allows a user to comment on a private post by manipulating the ID included in the request