CWE-862

High likelihood

Missing Authorization

Parent: CWE-285 - Improper Authorization

The product does not perform an authorization check when an actor attempts to access a resource or perform an action.

8,330 vulnerabilities with CWE-862
CVE-2025-6215 MEDIUM
Omnishop plugin <1.0.9 - Auth Bypass
CVSS 5.3
CVE-2025-6190 HIGH
Realty Portal - Agent <0.3.9 - Privilege Escalation
CVSS 8.8
CVE-2025-6187 CRITICAL
bSecure WordPress <1.7.9 - Privilege Escalation
CVSS 9.8
CVE-2025-7717 HIGH
Drupal File Download 0.0.0-1.8.0 and 2.0.0 - Missing Authorization
CVSS 7.5
CVE-2025-43720 MEDIUM
Headwind MDM < 5.33.1 - Unauthorized Configuration Profile Access via Observer Role
CVSS 6.5
CVE-2025-43977 MEDIUM
com.skt.prod.dialer through 12.5.0 - Unauthenticated Phone Call Placement via OutgoingCallInternalBroadcaster Intent
CVSS 5.5
CVE-2025-43976 MEDIUM
2ndline through 24.17.1.0 - Unauthenticated Phone Call Placement via Crafted Intent
CVSS 5.5
CVE-2025-7834 MEDIUM
PHPGurukul Complaint Management System 2.0 - CSRF
CVSS 4.3
CVE-2025-6721 MEDIUM
Vchasno Kasa <1.0.3 - Info Disclosure
CVSS 5.3
CVE-2025-6720 MEDIUM
Vchasno Kasa <1.0.3 - Info Disclosure
CVSS 5.3
CVE-2025-49747 CRITICAL
Azure Machine Learning - Missing Authorization
CVSS 9.9
CVE-2025-7772 MEDIUM
Malcure Malware Scanner - #1 Toolset - Arbitrary File Read
CVSS 6.5
CVE-2025-6726 MEDIUM
WordPress Block Editor Gallery Slider <1.1.1 - Info Disclosure
CVSS 4.3
CVE-2025-6718 HIGH
B1.lt plugin <2.2.56 - SQL Injection
CVSS 8.8
CVE-2025-5811 MEDIUM
Listly: Listicles For WordPress <2.7 - Info Disclosure
CVSS 5.3
CVE-2025-6813 HIGH
aapanel WP Toolkit <1.2 - Privilege Escalation
CVSS 8.8
CVE-2025-5816 MEDIUM
Biteship plugin <3.2.0 - Info Disclosure
CVSS 4.3
CVE-2025-7756 MEDIUM
code-projects E-Commerce Site 1.0 - CSRF
CVSS 4.3
CVE-2025-3871 MEDIUM
Fortra's GoAnywhere MFT <7.8.1 - DoS
CVSS 5.3
CVE-2025-52804 HIGH
uxper Nuss <1.3.3 - Info Disclosure
CVSS 7.5
CVE-2025-52803 HIGH
uxper Sala <1.1.3 - Info Disclosure
CVSS 7.5
CVE-2025-50028 MEDIUM
CodeSolz Ultimate Push Notifications <1.1.9 - RCE
CVSS 6.5
CVE-2025-49888 HIGH
PW WooCommerce On Sale! <1.39 - RCE
CVSS 7.1
CVE-2025-49884 MEDIUM
alexvtn Internal Linking - Info Disclosure
CVSS 6.5
CVE-2025-49319 MEDIUM
WPFactory Wishlist <3.2.3 - Info Disclosure
CVSS 6.5
Details
Vulnerabilities 8,330
Exploit Likelihood High