PatchSiren

APPYAP Technology and Information Inc. CVE debriefs

These pages are published after PatchSiren validates generated defensive summaries against stored public CVE and source evidence.

HIGH APPYAP Technology and Information Inc. CVE published 2026-05-14

CVE-2025-12008

CVE-2025-12008 is an authorization bypass vulnerability in the Yaay Social Media App, affecting versions from 3.8.0 through 24102025. This issue allows attackers to access functionality not properly constrained by Access Control Lists (ACLs). The vulnerability has a high CVSS score of 8.8, indicating a significant risk to affected systems. Defenders should verify affected versions in their inventory and a [truncated]