The product does not perform an authorization check when an actor attempts to access a resource or perform an action.
8,331 vulnerabilities with CWE-862
CVE-2025-5132
MEDIUM
Tmall Demo < 2025-05-05 - Cross-Site Request Forgery in Admin Account Logout
CVSS 4.3
CVE-2025-48275
MEDIUM
dastan800 Visual Header <1.3 - Info Disclosure
CVSS 6.5
CVE-2025-48271
MEDIUM
Leadinfo <= 1.1 - Missing Authorization
CVSS 6.5
CVE-2025-47690
HIGH
Smackcoders Lead Form Data Collection to CRM <3.1 - Privilege Escal...
CVSS 8.8
CVE-2025-47619
MEDIUM
6Storage Rentals <2.19.4 - Path Traversal
CVSS 6.5
CVE-2025-47558
HIGH
MapSVG < 8.6.13 - Missing Authorization
CVSS 7.5
CVE-2025-47529
MEDIUM
UX Design Experts Experto CTA Widget - Info Disclosure
CVSS 6.5
CVE-2025-46488
HIGH
dastan800 Visual Builder -n/a-1.2.2 - XSS
CVSS 7.1
CVE-2025-39536
HIGH
Chimpstudio JobHunt Job Alerts <3.6 - Info Disclosure
CVSS 8.2
CVE-2025-2506
MEDIUM
pglogical <3.x - Privilege Escalation
CVSS 5.3
CVE-2025-47942
MEDIUM
Open edX Platform - Info Disclosure
CVSS 5.3
CVE-2025-5033
MEDIUM
TeaCMS 2.0.2 - Cross-Site Request Forgery in User Management
CVSS 4.3
CVE-2025-48009
LOW
Drupal Single Content Sync < 1.4.12 - Missing Authorization
CVSS 3.1
CVE-2025-4105
MEDIUM
Splitit WordPress <4.2.8 - Info Disclosure
CVSS 5.4
CVE-2025-41231
HIGH
VMware Cloud Foundation 4.5-4.5.1 - Missing Authorization
CVSS 7.3
CVE-2025-39352
HIGH
ThemeGoods Grand Restaurant <= 7.0 - Missing Authorization
CVSS 8.2
CVE-2025-39350
HIGH
Rocket Apps wProject <5.8.0 - Info Disclosure
CVSS 8.2
CVE-2025-43838
MEDIUM
ChoPlugins Custom PC Builder Lite - Privilege Escalation
CVSS 6.5
CVE-2025-39451
HIGH
Crocoblock JetBlocks For Elementor <1.3.16 - Info Disclosure
CVSS 7.5
CVE-2025-39449
HIGH
Crocoblock JetWooBuilder <2.1.18 - Info Disclosure
CVSS 7.5
CVE-2025-39447
HIGH
Crocoblock JetElements For Elementor <2.7.4.1 - Info Disclosure
CVSS 7.5
CVE-2025-39460
MEDIUM
ThimPress Eduma <5.6.4 - Info Disclosure
CVSS 5.3
CVE-2025-39454
MEDIUM
Jeroen Peters Name Directory <1.30.0 - Info Disclosure
CVSS 4.3
CVE-2025-39412
MEDIUM
averta Master Slider <= 3.11.0 - Missing Authorization
CVSS 4.3
CVE-2025-39398
MEDIUM
Themovation Hotel + Bed and Breakfast Booking Calendar Theme <4.2.2...
CVSS 4.3
Details
Vulnerabilities
8,331
Exploit Likelihood
High