APPYAP Yaay Social Media App Authorization Bypass Vulnerability

Vulnerability

A vulnerability allowing authorization bypass through user-controlled keys has been identified in the Yaay Social Media App developed by APPYAP Technology and Information Inc. This issue affects versions 3.8.0 through 24102025 and allows users to access functionalities that are not properly restricted by access control lists (ACLs).

Impact

Exploitation of this vulnerability could lead to unauthorized access to functions and data within the application, bypassing normal authorization checks.

Remediation

Users are advised to update the application to version 24.10.2025 or later.

Added: May 14, 2026, 1:25 PM
Updated: May 14, 2026, 1:25 PM

Vulnerability Rating

Custom Algorithm
spread
0.0
impact
0.6
exploitability
7.4
remediation
0.0
relevance
8.2
threat
0.0
urgency
2.9
incentive
4.2

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.