CVE-2025-47548: Wbcomdesigns Activity Link Preview For Buddypress

Critical severity, CVSS 9.8. EPSS: 0.3% chance of exploitation in the next 30 days.

Server-Side Request Forgery (SSRF) vulnerability in Varun Dubey Wbcom Designs - Activity Link Preview For BuddyPress activity-link-preview-for-buddypress allows Server Side Request Forgery.This issue affects Wbcom Designs - Activity Link Preview For BuddyPress: from n/a through <= 1.4.4.

Affected products

  • Wbcomdesigns Activity Link Preview For Buddypress: up to and including 1.4.4

Published 2025-05-07. Last modified 2026-06-17.