CVE-2026-53675 | BuddyPress up to 14.4.0 Friends REST API get_items_permissions_check authorization
A vulnerability has been found in BuddyPress up to 14.4.0 and classified as problematic. Affected by this vulnerability is the function get_items_permissions_check of the component Friends REST API. This manipulation causes authorization bypass.
This vulnerability is handled as CVE-2026-53675. The attack can be initiated remotely. There is not any exploit available.