The product does not perform an authorization check when an actor attempts to access a resource or perform an action.
8,330 vulnerabilities with CWE-862
CVE-2025-6215
MEDIUM
Omnishop plugin <1.0.9 - Auth Bypass
CVSS 5.3
CVE-2025-6190
HIGH
Realty Portal - Agent <0.3.9 - Privilege Escalation
CVSS 8.8
CVE-2025-6187
CRITICAL
bSecure WordPress <1.7.9 - Privilege Escalation
CVSS 9.8
CVE-2025-7717
HIGH
Drupal File Download 0.0.0-1.8.0 and 2.0.0 - Missing Authorization
CVSS 7.5
CVE-2025-43720
MEDIUM
Headwind MDM < 5.33.1 - Unauthorized Configuration Profile Access via Observer Role
CVSS 6.5
CVE-2025-43977
MEDIUM
com.skt.prod.dialer through 12.5.0 - Unauthenticated Phone Call Placement via OutgoingCallInternalBroadcaster Intent
CVSS 5.5
CVE-2025-43976
MEDIUM
2ndline through 24.17.1.0 - Unauthenticated Phone Call Placement via Crafted Intent
CVSS 5.5
CVE-2025-7834
MEDIUM
PHPGurukul Complaint Management System 2.0 - CSRF
CVSS 4.3
CVE-2025-6721
MEDIUM
Vchasno Kasa <1.0.3 - Info Disclosure
CVSS 5.3
CVE-2025-6720
MEDIUM
Vchasno Kasa <1.0.3 - Info Disclosure
CVSS 5.3
CVE-2025-49747
CRITICAL
Azure Machine Learning - Missing Authorization
CVSS 9.9
CVE-2025-7772
MEDIUM
Malcure Malware Scanner - #1 Toolset - Arbitrary File Read
CVSS 6.5
CVE-2025-6726
MEDIUM
WordPress Block Editor Gallery Slider <1.1.1 - Info Disclosure
CVSS 4.3
CVE-2025-6718
HIGH
B1.lt plugin <2.2.56 - SQL Injection
CVSS 8.8
CVE-2025-5811
MEDIUM
Listly: Listicles For WordPress <2.7 - Info Disclosure
CVSS 5.3
CVE-2025-6813
HIGH
aapanel WP Toolkit <1.2 - Privilege Escalation
CVSS 8.8
CVE-2025-5816
MEDIUM
Biteship plugin <3.2.0 - Info Disclosure
CVSS 4.3
CVE-2025-7756
MEDIUM
code-projects E-Commerce Site 1.0 - CSRF
CVSS 4.3
CVE-2025-3871
MEDIUM
Fortra's GoAnywhere MFT <7.8.1 - DoS
CVSS 5.3
CVE-2025-52804
HIGH
uxper Nuss <1.3.3 - Info Disclosure
CVSS 7.5
CVE-2025-52803
HIGH
uxper Sala <1.1.3 - Info Disclosure
CVSS 7.5
CVE-2025-50028
MEDIUM
CodeSolz Ultimate Push Notifications <1.1.9 - RCE
CVSS 6.5
CVE-2025-49888
HIGH
PW WooCommerce On Sale! <1.39 - RCE
CVSS 7.1
CVE-2025-49884
MEDIUM
alexvtn Internal Linking - Info Disclosure
CVSS 6.5
CVE-2025-49319
MEDIUM
WPFactory Wishlist <3.2.3 - Info Disclosure
CVSS 6.5
Details
Vulnerabilities
8,330
Exploit Likelihood
High