The product does not perform an authorization check when an actor attempts to access a resource or perform an action.
8,330 vulnerabilities with CWE-862
CVE-2025-10212
MEDIUM
SiteAlert (Formerly WP Health) <1.9.8 - Info Disclosure
CVSS 5.3
CVE-2025-11051
MEDIUM
SourceCodester Pet Grooming Mgmt <1.0 - CSRF
CVSS 4.3
CVE-2025-11029
MEDIUM
Vvveb < 1.0.7.2 - Cross-Site Request Forgery
CVSS 4.3
CVE-2025-60166
MEDIUM
wpshuffle WP Subscription Forms PRO <2.0.5 - Info Disclosure
CVSS 4.3
CVE-2025-60165
MEDIUM
HaruTheme Frames <1.5.7 - Info Disclosure
CVSS 4.3
CVE-2025-60159
MEDIUM
Nota Fiscal Eletrônica WooCommerce <3.4.0.6 - Auth Bypass
CVSS 4.3
CVE-2025-60155
MEDIUM
loopus WP Virtual Assistant <3.0 - RCE
CVSS 5.3
CVE-2025-60152
MEDIUM
wpshuffle Subscribe To Unlock <1.1.5 - Info Disclosure
CVSS 4.3
CVE-2025-60148
MEDIUM
Subscribe to Download <= 2.0.9 - Missing Authorization
CVSS 4.3
CVE-2025-60143
MEDIUM
Netgsm <= 2.9.69 - Missing Authorization
CVSS 4.3
CVE-2025-60130
MEDIUM
wedos.com WEDOS Global - Info Disclosure
CVSS 5.3
CVE-2025-60129
MEDIUM
Yext <= 1.1.3 - Missing Authorization
CVSS 5.3
CVE-2025-60128
MEDIUM
WP Delicious Delisho <1.1.3 - Info Disclosure
CVSS 4.3
CVE-2025-60127
MEDIUM
ArtistScope CopySafe Web Protection <4.3 - RCE
CVSS 5.4
CVE-2025-60123
MEDIUM
HivePress Claim Listings <1.1.3 - Info Disclosure
CVSS 4.3
CVE-2025-60122
MEDIUM
HivePress Claim Listings <1.1.3 - Info Disclosure
CVSS 4.3
CVE-2025-60121
MEDIUM
Ex-Themes WooEvents <4.1.7 - Info Disclosure
CVSS 5.3
CVE-2025-60120
MEDIUM
WP Directory Kit <= 1.4.0 - Missing Authorization
CVSS 5.3
CVE-2025-60116
MEDIUM
ThemeGoods Grand Conference Theme Custom Post Type < 2.6.4 - Missing Authorization
CVSS 5.4
CVE-2025-60106
MEDIUM
Roxnor EmailKit <1.6.0 - Info Disclosure
CVSS 4.9
CVE-2025-60103
MEDIUM
CridioStudio ListingPro <2.9.8 - Privilege Escalation
CVSS 5.4
CVE-2025-60098
MEDIUM
Jeff Farthing Theme My Login <7.1.12 - Info Disclosure
CVSS 6.5
CVE-2025-60097
MEDIUM
TheGem <= 5.10.5 - Missing Authorization
CVSS 5.4
CVE-2025-60096
MEDIUM
CodexThemes TheGem <5.10.5 - Privilege Escalation
CVSS 5.4
CVE-2025-60094
MEDIUM
Benjamin Intal Stackable <3.18.1 - Info Disclosure
CVSS 4.3
Details
Vulnerabilities
8,330
Exploit Likelihood
High