CVE-2025-12008: Appyap Technology And Information Inc Yaay Social Media App

High severity, CVSS 8.8. EPSS: 0.2% chance of exploitation in the next 30 days.

Authorization bypass through User-Controlled key vulnerability in APPYAP Technology and Information Inc. Yaay Social Media App allows Accessing Functionality Not Properly Constrained by ACLs. This issue affects Yaay Social Media App: from 3.8.0 through 24102025.

Affected products

Published 2026-05-14. Last modified 2026-10-07.