CWE-862

High likelihood

Missing Authorization

Parent: CWE-285 - Improper Authorization

The product does not perform an authorization check when an actor attempts to access a resource or perform an action.

8,330 vulnerabilities with CWE-862
CVE-2025-10212 MEDIUM
SiteAlert (Formerly WP Health) <1.9.8 - Info Disclosure
CVSS 5.3
CVE-2025-11051 MEDIUM
SourceCodester Pet Grooming Mgmt <1.0 - CSRF
CVSS 4.3
CVE-2025-11029 MEDIUM
Vvveb < 1.0.7.2 - Cross-Site Request Forgery
CVSS 4.3
CVE-2025-60166 MEDIUM
wpshuffle WP Subscription Forms PRO <2.0.5 - Info Disclosure
CVSS 4.3
CVE-2025-60165 MEDIUM
HaruTheme Frames <1.5.7 - Info Disclosure
CVSS 4.3
CVE-2025-60159 MEDIUM
Nota Fiscal Eletrônica WooCommerce <3.4.0.6 - Auth Bypass
CVSS 4.3
CVE-2025-60155 MEDIUM
loopus WP Virtual Assistant <3.0 - RCE
CVSS 5.3
CVE-2025-60152 MEDIUM
wpshuffle Subscribe To Unlock <1.1.5 - Info Disclosure
CVSS 4.3
CVE-2025-60148 MEDIUM
Subscribe to Download <= 2.0.9 - Missing Authorization
CVSS 4.3
CVE-2025-60143 MEDIUM
Netgsm <= 2.9.69 - Missing Authorization
CVSS 4.3
CVE-2025-60130 MEDIUM
wedos.com WEDOS Global - Info Disclosure
CVSS 5.3
CVE-2025-60129 MEDIUM
Yext <= 1.1.3 - Missing Authorization
CVSS 5.3
CVE-2025-60128 MEDIUM
WP Delicious Delisho <1.1.3 - Info Disclosure
CVSS 4.3
CVE-2025-60127 MEDIUM
ArtistScope CopySafe Web Protection <4.3 - RCE
CVSS 5.4
CVE-2025-60123 MEDIUM
HivePress Claim Listings <1.1.3 - Info Disclosure
CVSS 4.3
CVE-2025-60122 MEDIUM
HivePress Claim Listings <1.1.3 - Info Disclosure
CVSS 4.3
CVE-2025-60121 MEDIUM
Ex-Themes WooEvents <4.1.7 - Info Disclosure
CVSS 5.3
CVE-2025-60120 MEDIUM
WP Directory Kit <= 1.4.0 - Missing Authorization
CVSS 5.3
CVE-2025-60116 MEDIUM
ThemeGoods Grand Conference Theme Custom Post Type < 2.6.4 - Missing Authorization
CVSS 5.4
CVE-2025-60106 MEDIUM
Roxnor EmailKit <1.6.0 - Info Disclosure
CVSS 4.9
CVE-2025-60103 MEDIUM
CridioStudio ListingPro <2.9.8 - Privilege Escalation
CVSS 5.4
CVE-2025-60098 MEDIUM
Jeff Farthing Theme My Login <7.1.12 - Info Disclosure
CVSS 6.5
CVE-2025-60097 MEDIUM
TheGem <= 5.10.5 - Missing Authorization
CVSS 5.4
CVE-2025-60096 MEDIUM
CodexThemes TheGem <5.10.5 - Privilege Escalation
CVSS 5.4
CVE-2025-60094 MEDIUM
Benjamin Intal Stackable <3.18.1 - Info Disclosure
CVSS 4.3
Details
Vulnerabilities 8,330
Exploit Likelihood High