CWE-862

High likelihood

Missing Authorization

Parent: CWE-285 - Improper Authorization

The product does not perform an authorization check when an actor attempts to access a resource or perform an action.

8,331 vulnerabilities with CWE-862
CVE-2025-49723 HIGH
Windows StateRepository API - Missing Authorization
CVSS 8.8
CVE-2025-5957 MEDIUM
Guest Support - Complete customer support ticket system for WordPre...
CVSS 5.3
CVE-2025-42986 MEDIUM
SAP BASIS - Missing Authorization Check in Obsolete RFC Function Module
CVSS 4.3
CVE-2025-42974 MEDIUM
SAP NetWeaver and ABAP Platform - Missing Authorization Check
CVSS 4.3
CVE-2025-42968 MEDIUM
SAP NetWeaver - Authenticated Information Disclosure via Remote-Enabled Function Module
CVSS 5.0
CVE-2025-42961 MEDIUM
SAP NetWeaver Application server for ABAP - Privilege Escalation
CVSS 4.9
CVE-2025-42960 MEDIUM
SAP Business Warehouse - Privilege Escalation
CVSS 4.3
CVE-2025-42953 HIGH
SAP Netweaver - Privilege Escalation
CVSS 8.1
CVE-2025-42952 HIGH
SAP Business Warehouse & SAP Plug-In Basis - Privilege Escalation
CVSS 7.7
CVE-2025-53499 CRITICAL
Mediawiki AbuseFilter <1.43.2 - Info Disclosure
CVSS 9.1
CVE-2025-53495 CRITICAL
Mediawiki AbuseFilter <1.43.2 - Info Disclosure
CVSS 9.1
CVE-2025-53374 MEDIUM
dokploy < 0.23.7 - Authenticated Exposure of Private Personal Information via user.one Endpoint
CVSS 4.3
CVE-2025-7133 MEDIUM
CodeAstro Online Movie Ticket Booking System 1.0 - Cross-Site Request Forgery
CVSS 4.3
CVE-2025-7078 MEDIUM
07flycms and 07FlyCRM < 1.3.9 - Cross-Site Request Forgery
CVSS 4.3
CVE-2025-53485 HIGH
MediaWiki - SecurePoll <1.39.13-1.42.7-1.43.2 - Info Disclosure
CVSS 7.5
CVE-2025-52813 HIGH
MobiLoud < 4.6.5 - Missing Authorization
CVSS 8.1
CVE-2025-50039 MEDIUM
VG WORT METIS <= 2.0.1 - Missing Authorization
CVSS 6.5
CVE-2025-50032 MEDIUM
Paytiko <1.3.14 - Privilege Escalation
CVSS 6.5
CVE-2025-49431 MEDIUM
Gnuget MF Plus WPML - Info Disclosure
CVSS 6.5
CVE-2025-47634 MEDIUM
WC Pickup Store <1.8.9 - Info Disclosure
CVSS 6.5
CVE-2025-47565 MEDIUM
ashanjay EventON <4.9.9 - Privilege Escalation
CVSS 6.3
CVE-2025-30929 MEDIUM
amazewp fluXtore <1.6.0 - Info Disclosure
CVSS 5.3
CVE-2025-29012 MEDIUM
Kamleshyadav CF7 7 Mailchimp Add-on - Info Disclosure
CVSS 5.3
CVE-2025-29007 MEDIUM
LMSACE Connect <= 3.4 - Missing Authorization
CVSS 4.3
CVE-2025-29001 MEDIUM
ZoomIt WooCommerce Shop Page Builder <2.27.7 - Info Disclosure
CVSS 4.3
Details
Vulnerabilities 8,331
Exploit Likelihood High