The product does not perform an authorization check when an actor attempts to access a resource or perform an action.
8,330 vulnerabilities with CWE-862
CVE-2025-8423
MEDIUM
My WP Translate <1.1 - Info Disclosure
CVSS 5.4
CVE-2025-0763
MEDIUM
Ultimate Classified Listings <1.7 - Info Disclosure
CVSS 4.3
CVE-2025-36756
MEDIUM
SolaX Cloud - Unauthenticated Account Takeover via Serial Number
CVE-2025-9979
MEDIUM
Maspik plugin <2.5.6 - Missing Authorization
CVSS 4.3
CVE-2025-8778
MEDIUM
NitroPack <1.18.4 - Info Disclosure
CVSS 4.3
CVE-2025-10040
HIGH
WP Import - Ultimate CSV XML Importer <7.27 - Info Disclosure
CVSS 7.7
CVE-2025-49459
HIGH
Zoom Workplace for Windows on ARM <6.5.0 - Privilege Escalation
CVSS 7.8
CVE-2025-58753
HIGH
Copyparty <1.19.8 - Info Disclosure
CVSS 7.5
CVE-2025-59005
MEDIUM
Frenify Categorify <1.0.7.5 - Info Disclosure
CVSS 4.3
CVE-2025-58981
MEDIUM
Equalize Digital Accessibility Checker <1.31.0 - Info Disclosure
CVSS 5.4
CVE-2025-58980
MEDIUM
Export WP Page to Static HTML/CSS <4.1.0 - Info Disclosure
CVSS 5.3
CVE-2025-58979
MEDIUM
BerqWP <= 2.2.53 - Missing Authorization
CVSS 5.3
CVE-2025-58978
MEDIUM
WP Swings PDF Generator <1.5.4 - Info Disclosure
CVSS 5.3
CVE-2025-58976
MEDIUM
Equalize Digital Accessibility Checker <1.31.0 - Info Disclosure
CVSS 4.3
CVE-2025-53348
MEDIUM
Laborator Kalium <= 3.18.3 - Missing Authorization
CVSS 5.3
CVE-2025-53340
MEDIUM
Awesome Support <6.3.4 - Info Disclosure
CVSS 5.3
CVE-2025-53291
MEDIUM
spoddev2021 Spreadconnect - Info Disclosure
CVSS 5.4
CVE-2025-49860
MEDIUM
Majestic Support <1.1.0 - Info Disclosure
CVSS 5.3
CVE-2025-39553
MEDIUM
Church Admin <5.0.9 - Info Disclosure
CVSS 4.3
CVE-2025-39541
MEDIUM
Roland Murg WP Simple Booking Calendar <2.0.13 - Info Disclosure
CVSS 6.5
CVE-2025-32688
MEDIUM
Sovica Target Video Easy Publish <3.8.8 - Info Disclosure
CVSS 5.4
CVE-2025-8712
MEDIUM
Ivanti Neurons for Secure Access < 22.8 - Authenticated Missing Authorization
CVSS 5.4
CVE-2025-55148
HIGH
Ivanti Connect Secure < 22.7 - Authenticated Missing Authorization
CVSS 7.6
CVE-2025-55145
HIGH
Ivanti Connect Secure <22.7R2.9,22.8R2 - Auth Bypass
CVSS 8.9
CVE-2025-55144
MEDIUM
Ivanti Connect Secure <22.7R2.9,22.8R2 - Privilege Escalation
CVSS 5.4
Details
Vulnerabilities
8,330
Exploit Likelihood
High