CWE-862

High likelihood

Missing Authorization

Parent: CWE-285 - Improper Authorization

The product does not perform an authorization check when an actor attempts to access a resource or perform an action.

8,330 vulnerabilities with CWE-862
CVE-2025-8423 MEDIUM
My WP Translate <1.1 - Info Disclosure
CVSS 5.4
CVE-2025-0763 MEDIUM
Ultimate Classified Listings <1.7 - Info Disclosure
CVSS 4.3
CVE-2025-36756 MEDIUM
SolaX Cloud - Unauthenticated Account Takeover via Serial Number
CVE-2025-9979 MEDIUM
Maspik plugin <2.5.6 - Missing Authorization
CVSS 4.3
CVE-2025-8778 MEDIUM
NitroPack <1.18.4 - Info Disclosure
CVSS 4.3
CVE-2025-10040 HIGH
WP Import - Ultimate CSV XML Importer <7.27 - Info Disclosure
CVSS 7.7
CVE-2025-49459 HIGH
Zoom Workplace for Windows on ARM <6.5.0 - Privilege Escalation
CVSS 7.8
CVE-2025-58753 HIGH
Copyparty <1.19.8 - Info Disclosure
CVSS 7.5
CVE-2025-59005 MEDIUM
Frenify Categorify <1.0.7.5 - Info Disclosure
CVSS 4.3
CVE-2025-58981 MEDIUM
Equalize Digital Accessibility Checker <1.31.0 - Info Disclosure
CVSS 5.4
CVE-2025-58980 MEDIUM
Export WP Page to Static HTML/CSS <4.1.0 - Info Disclosure
CVSS 5.3
CVE-2025-58979 MEDIUM
BerqWP <= 2.2.53 - Missing Authorization
CVSS 5.3
CVE-2025-58978 MEDIUM
WP Swings PDF Generator <1.5.4 - Info Disclosure
CVSS 5.3
CVE-2025-58976 MEDIUM
Equalize Digital Accessibility Checker <1.31.0 - Info Disclosure
CVSS 4.3
CVE-2025-53348 MEDIUM
Laborator Kalium <= 3.18.3 - Missing Authorization
CVSS 5.3
CVE-2025-53340 MEDIUM
Awesome Support <6.3.4 - Info Disclosure
CVSS 5.3
CVE-2025-53291 MEDIUM
spoddev2021 Spreadconnect - Info Disclosure
CVSS 5.4
CVE-2025-49860 MEDIUM
Majestic Support <1.1.0 - Info Disclosure
CVSS 5.3
CVE-2025-39553 MEDIUM
Church Admin <5.0.9 - Info Disclosure
CVSS 4.3
CVE-2025-39541 MEDIUM
Roland Murg WP Simple Booking Calendar <2.0.13 - Info Disclosure
CVSS 6.5
CVE-2025-32688 MEDIUM
Sovica Target Video Easy Publish <3.8.8 - Info Disclosure
CVSS 5.4
CVE-2025-8712 MEDIUM
Ivanti Neurons for Secure Access < 22.8 - Authenticated Missing Authorization
CVSS 5.4
CVE-2025-55148 HIGH
Ivanti Connect Secure < 22.7 - Authenticated Missing Authorization
CVSS 7.6
CVE-2025-55145 HIGH
Ivanti Connect Secure <22.7R2.9,22.8R2 - Auth Bypass
CVSS 8.9
CVE-2025-55144 MEDIUM
Ivanti Connect Secure <22.7R2.9,22.8R2 - Privilege Escalation
CVSS 5.4
Details
Vulnerabilities 8,330
Exploit Likelihood High