Home
HIGH: 8.8 CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:HDefault status
unaffected
3.8.0 (custom)
affected
Description
Authorization bypass through User-Controlled key vulnerability in APPYAP Technology and Information Inc. Yaay Social Media App allows Accessing Functionality Not Properly Constrained by ACLs. This issue affects Yaay Social Media App: from 3.8.0 through 24102025.
Problem types
CWE-639 Authorization bypass through User-Controlled key
Product status
3.8.0 (custom)
Credits
Aybora ÜNVEREN
References
siberguvenlik.gov.tr/guvenlik-bildirimleri/detay/tr-26-0238