HIGH
APPYAP Technology and Information Inc.
CVE published 2026-05-14
CVE-2025-12008
CVE-2025-12008 is an authorization bypass vulnerability in the Yaay Social Media App, affecting versions from 3.8.0 through 24102025. This issue allows attackers to access functionality not properly constrained by Access Control Lists (ACLs). The vulnerability has a high CVSS score of 8.8, indicating a significant risk to affected systems. Defenders should verify affected versions in their inventory and a [truncated]