The product does not perform an authorization check when an actor attempts to access a resource or perform an action.
8,331 vulnerabilities with CWE-862
CVE-2025-49723
HIGH
Windows StateRepository API - Missing Authorization
CVSS 8.8
CVE-2025-5957
MEDIUM
Guest Support - Complete customer support ticket system for WordPre...
CVSS 5.3
CVE-2025-42986
MEDIUM
SAP BASIS - Missing Authorization Check in Obsolete RFC Function Module
CVSS 4.3
CVE-2025-42974
MEDIUM
SAP NetWeaver and ABAP Platform - Missing Authorization Check
CVSS 4.3
CVE-2025-42968
MEDIUM
SAP NetWeaver - Authenticated Information Disclosure via Remote-Enabled Function Module
CVSS 5.0
CVE-2025-42961
MEDIUM
SAP NetWeaver Application server for ABAP - Privilege Escalation
CVSS 4.9
CVE-2025-42960
MEDIUM
SAP Business Warehouse - Privilege Escalation
CVSS 4.3
CVE-2025-42953
HIGH
SAP Netweaver - Privilege Escalation
CVSS 8.1
CVE-2025-42952
HIGH
SAP Business Warehouse & SAP Plug-In Basis - Privilege Escalation
CVSS 7.7
CVE-2025-53499
CRITICAL
Mediawiki AbuseFilter <1.43.2 - Info Disclosure
CVSS 9.1
CVE-2025-53495
CRITICAL
Mediawiki AbuseFilter <1.43.2 - Info Disclosure
CVSS 9.1
CVE-2025-53374
MEDIUM
dokploy < 0.23.7 - Authenticated Exposure of Private Personal Information via user.one Endpoint
CVSS 4.3
CVE-2025-7133
MEDIUM
CodeAstro Online Movie Ticket Booking System 1.0 - Cross-Site Request Forgery
CVSS 4.3
CVE-2025-7078
MEDIUM
07flycms and 07FlyCRM < 1.3.9 - Cross-Site Request Forgery
CVSS 4.3
CVE-2025-53485
HIGH
MediaWiki - SecurePoll <1.39.13-1.42.7-1.43.2 - Info Disclosure
CVSS 7.5
CVE-2025-52813
HIGH
MobiLoud < 4.6.5 - Missing Authorization
CVSS 8.1
CVE-2025-50039
MEDIUM
VG WORT METIS <= 2.0.1 - Missing Authorization
CVSS 6.5
CVE-2025-50032
MEDIUM
Paytiko <1.3.14 - Privilege Escalation
CVSS 6.5
CVE-2025-49431
MEDIUM
Gnuget MF Plus WPML - Info Disclosure
CVSS 6.5
CVE-2025-47634
MEDIUM
WC Pickup Store <1.8.9 - Info Disclosure
CVSS 6.5
CVE-2025-47565
MEDIUM
ashanjay EventON <4.9.9 - Privilege Escalation
CVSS 6.3
CVE-2025-30929
MEDIUM
amazewp fluXtore <1.6.0 - Info Disclosure
CVSS 5.3
CVE-2025-29012
MEDIUM
Kamleshyadav CF7 7 Mailchimp Add-on - Info Disclosure
CVSS 5.3
CVE-2025-29007
MEDIUM
LMSACE Connect <= 3.4 - Missing Authorization
CVSS 4.3
CVE-2025-29001
MEDIUM
ZoomIt WooCommerce Shop Page Builder <2.27.7 - Info Disclosure
CVSS 4.3
Details
Vulnerabilities
8,331
Exploit Likelihood
High