Known vulnerabilities in Invite Anyone
Makes BuddyPress's invitation features more powerful.
6Reported vulnerabilities
9.8Highest CVSS score
1.4.10Latest version
1,000+Active installs
What to do now
Update Invite Anyone to 1.4.8 or later.
6 of these have a fixed version available. Updating resolves them.
This plugin has not been updated in over two years. New vulnerabilities may never be fixed. Consider an alternative.
Reported vulnerabilities
| CVE | Severity | Exploit probability |
Affected versions | Fixed in | Published |
|---|---|---|---|---|---|
| CVE-2017-18543 | Critical | 1.8% | Before 1.3.16 | 1.3.16 |
August 16, 2019 |
| WF-b77c3d65-23c0-4bda-afea-9cad00fc04d6 | Critical | — | 1.3.18 and earlier | 1.3.19 |
October 12, 2017 |
| CVE-2017-18544 | High | 0.6% | Before 1.3.16 | 1.3.16 |
August 16, 2019 |
| CVE-2017-18545 | High | 1.3% | Before 1.3.16 | 1.3.16 |
August 16, 2019 |
| CVE-2024-43327 | Medium | 0.3% | 1.4.7 and earlier | 1.4.8 |
August 16, 2024 |
| CVE-2017-6955 | Medium | 1.8% | 1.3.13 and earlier | 1.3.15 |
March 17, 2017 |