{"api_version":"v1","generated_at":"2026-10-08T03:00:00+00:00","product":{"cve_count":4,"evidence_gap_note":"This identity is present in BlackTree CVE records, but no product-specific publisher support or retirement history is currently registered in Lifecycle.","id":"security:cve-themekraft-buddyforms-c5f2a198f237","lifecycle_state":"evidence_gap","linked_lifecycle_url":null,"name":"BuddyForms","next_cursor":null,"observations":[{"affected":"n/a \u2264 2.9.0","affected_versions_present":true,"cve_id":"CVE-2026-81785","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-81785","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2026-09-10T15:08:25.400Z","patch_url":"","primary_source":"","published":"2026-09-10T14:23:40.798Z"},{"affected":"BuddyForms: \u2264 2.10.2","affected_versions_present":true,"cve_id":"CVE-2025-62973","cve_url":"https://cve.blacktree.nl/cve/CVE-2025-62973","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2026-10-06T11:24:43.638Z","patch_url":"","primary_source":"","published":"2025-10-27T01:34:16.394Z"},{"affected":"\u2264 2.9.0","affected_versions_present":true,"cve_id":"CVE-2025-32151","cve_url":"https://cve.blacktree.nl/cve/CVE-2025-32151","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2026-05-12T00:04:09.252Z","patch_url":"","primary_source":"","published":"2025-04-04T15:58:37.665Z"},{"affected":"\u2264 2.8.12","affected_versions_present":true,"cve_id":"CVE-2024-47377","cve_url":"https://cve.blacktree.nl/cve/CVE-2024-47377","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2026-04-28T16:10:19.952Z","patch_url":"","primary_source":"","published":"2024-10-05T15:12:04.014Z"},{"affected":"n/a \u2264 2.8.8","affected_versions_present":true,"cve_id":"CVE-2024-32830","cve_url":"https://cve.blacktree.nl/cve/CVE-2024-32830","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2026-04-28T16:09:41.310Z","patch_url":"https://patchstack.com/database/vulnerability/buddyforms/wordpress-buddyforms-plugin-2-8-8-arbitrary-file-read-and-ssrf-vulnerability?_s_id=cve","primary_source":"","published":"2024-05-17T09:40:05.683Z"},{"affected":"n/a \u2264 2.8.5","affected_versions_present":true,"cve_id":"CVE-2024-30198","cve_url":"https://cve.blacktree.nl/cve/CVE-2024-30198","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2026-04-28T16:09:22.030Z","patch_url":"https://patchstack.com/database/vulnerability/buddyforms/wordpress-buddyforms-plugin-2-8-5-reflected-cross-site-scripting-xss-vulnerability?_s_id=cve","primary_source":"","published":"2024-03-27T06:16:47.590Z"}],"source_generated_at":"2026-10-07T06:21:30.017Z","vendor":"Themekraft"}}
