CWE-862

High likelihood

Missing Authorization

Parent: CWE-285 - Improper Authorization

The product does not perform an authorization check when an actor attempts to access a resource or perform an action.

8,330 vulnerabilities with CWE-862
CVE-2025-22178 MEDIUM
Jira Align 11.14.0-11.16.0 - Missing Authorization for Sensitive Endpoints
CVSS 4.3
CVE-2025-62073 MEDIUM
Sovlix MeetingHub <1.23.9 - Info Disclosure
CVSS 4.3
CVE-2025-62072 MEDIUM
Rustaurius Front End Users <3.2.33 - Info Disclosure
CVSS 4.3
CVE-2025-62071 MEDIUM
Repuso Social proof testimonials and reviews <6 - Info Disclosure
CVSS 4.3
CVE-2025-62070 MEDIUM
WPXPO WowRevenue <1.2.13 - Info Disclosure
CVSS 4.3
CVE-2025-62052 MEDIUM
Horea Radu One Page Express Companion <1.6.43 - Info Disclosure
CVSS 4.3
CVE-2025-62048 MEDIUM
WPMU DEV - Your All-in-One WordPress Platform SmartCrawl <3.14.3 - ...
CVSS 5.4
CVE-2025-62027 MEDIUM
StellarWP Event Tickets <5.26.3 - Info Disclosure
CVSS 5.4
CVE-2025-62022 HIGH
BuddyPress <14.3.4 - Info Disclosure
CVSS 7.5
CVE-2025-62021 MEDIUM
Made Neat Acknowledgify <1.1.4 - Info Disclosure
CVSS 4.3
CVE-2025-62019 MEDIUM
Recipe Card Blocks <3.4.8 - Info Disclosure
CVSS 6.5
CVE-2025-62013 MEDIUM
POSIMYTH UiChemy <4.0.0 - Info Disclosure
CVSS 4.3
CVE-2025-62006 MEDIUM
VeronaLabs WP SMS <7.0.1 - Info Disclosure
CVSS 5.4
CVE-2025-53424 MEDIUM
WooCommerce Orders & Customers Exporter <5.4 - RCE
CVSS 6.5
CVE-2025-53421 MEDIUM
PickPlugins Accordion <2.3.14 - RCE
CVSS 6.5
CVE-2025-53236 MEDIUM
AndonDesign UDesign Core <4.14.0 - Info Disclosure
CVSS 6.3
CVE-2025-52757 MEDIUM
FantasticPlugins SUMO Memberships - Info Disclosure
CVSS 6.5
CVE-2025-52738 MEDIUM
Wikimedia Foundation Wikipedia Preview <= 1.15.0 - Missing Authorization
CVSS 6.5
CVE-2025-49961 MEDIUM
Breeze Checkout <= 1.4.0 - Missing Authorization
CVSS 6.5
CVE-2025-49950 HIGH
billingo Official Integration - Privilege Escalation
CVSS 7.2
CVE-2025-49949 MEDIUM
Templazee <= 1.0.2 - Missing Authorization
CVSS 5.4
CVE-2025-49937 MEDIUM
Smash Balloon Social Post Feed <4.3.2 - Info Disclosure
CVSS 4.3
CVE-2025-49925 HIGH
VibeThemes WPLMS <= 1.9.9.7 - Missing Authorization
CVSS 7.5
CVE-2025-49922 MEDIUM
WPeMatico RSS Feed Fetcher <= 2.8.3 - Missing Authorization
CVSS 4.3
CVE-2025-49920 MEDIUM
Web Accessibility By accessiBe <= 2.10 - Missing Authorization
CVSS 5.4
Details
Vulnerabilities 8,330
Exploit Likelihood High