The product does not perform an authorization check when an actor attempts to access a resource or perform an action.
8,330 vulnerabilities with CWE-862
CVE-2025-22178
MEDIUM
Jira Align 11.14.0-11.16.0 - Missing Authorization for Sensitive Endpoints
CVSS 4.3
CVE-2025-62073
MEDIUM
Sovlix MeetingHub <1.23.9 - Info Disclosure
CVSS 4.3
CVE-2025-62072
MEDIUM
Rustaurius Front End Users <3.2.33 - Info Disclosure
CVSS 4.3
CVE-2025-62071
MEDIUM
Repuso Social proof testimonials and reviews <6 - Info Disclosure
CVSS 4.3
CVE-2025-62070
MEDIUM
WPXPO WowRevenue <1.2.13 - Info Disclosure
CVSS 4.3
CVE-2025-62052
MEDIUM
Horea Radu One Page Express Companion <1.6.43 - Info Disclosure
CVSS 4.3
CVE-2025-62048
MEDIUM
WPMU DEV - Your All-in-One WordPress Platform SmartCrawl <3.14.3 - ...
CVSS 5.4
CVE-2025-62027
MEDIUM
StellarWP Event Tickets <5.26.3 - Info Disclosure
CVSS 5.4
CVE-2025-62022
HIGH
BuddyPress <14.3.4 - Info Disclosure
CVSS 7.5
CVE-2025-62021
MEDIUM
Made Neat Acknowledgify <1.1.4 - Info Disclosure
CVSS 4.3
CVE-2025-62019
MEDIUM
Recipe Card Blocks <3.4.8 - Info Disclosure
CVSS 6.5
CVE-2025-62013
MEDIUM
POSIMYTH UiChemy <4.0.0 - Info Disclosure
CVSS 4.3
CVE-2025-62006
MEDIUM
VeronaLabs WP SMS <7.0.1 - Info Disclosure
CVSS 5.4
CVE-2025-53424
MEDIUM
WooCommerce Orders & Customers Exporter <5.4 - RCE
CVSS 6.5
CVE-2025-53421
MEDIUM
PickPlugins Accordion <2.3.14 - RCE
CVSS 6.5
CVE-2025-53236
MEDIUM
AndonDesign UDesign Core <4.14.0 - Info Disclosure
CVSS 6.3
CVE-2025-52757
MEDIUM
FantasticPlugins SUMO Memberships - Info Disclosure
CVSS 6.5
CVE-2025-52738
MEDIUM
Wikimedia Foundation Wikipedia Preview <= 1.15.0 - Missing Authorization
CVSS 6.5
CVE-2025-49961
MEDIUM
Breeze Checkout <= 1.4.0 - Missing Authorization
CVSS 6.5
CVE-2025-49950
HIGH
billingo Official Integration - Privilege Escalation
CVSS 7.2
CVE-2025-49949
MEDIUM
Templazee <= 1.0.2 - Missing Authorization
CVSS 5.4
CVE-2025-49937
MEDIUM
Smash Balloon Social Post Feed <4.3.2 - Info Disclosure
CVSS 4.3
CVE-2025-49925
HIGH
VibeThemes WPLMS <= 1.9.9.7 - Missing Authorization
CVSS 7.5
CVE-2025-49922
MEDIUM
WPeMatico RSS Feed Fetcher <= 2.8.3 - Missing Authorization
CVSS 4.3
CVE-2025-49920
MEDIUM
Web Accessibility By accessiBe <= 2.10 - Missing Authorization
CVSS 5.4
Details
Vulnerabilities
8,330
Exploit Likelihood
High