CWE-862

High likelihood

Missing Authorization

Parent: CWE-285 - Improper Authorization

The product does not perform an authorization check when an actor attempts to access a resource or perform an action.

8,331 vulnerabilities with CWE-862
CVE-2025-5132 MEDIUM
Tmall Demo < 2025-05-05 - Cross-Site Request Forgery in Admin Account Logout
CVSS 4.3
CVE-2025-48275 MEDIUM
dastan800 Visual Header <1.3 - Info Disclosure
CVSS 6.5
CVE-2025-48271 MEDIUM
Leadinfo <= 1.1 - Missing Authorization
CVSS 6.5
CVE-2025-47690 HIGH
Smackcoders Lead Form Data Collection to CRM <3.1 - Privilege Escal...
CVSS 8.8
CVE-2025-47619 MEDIUM
6Storage Rentals <2.19.4 - Path Traversal
CVSS 6.5
CVE-2025-47558 HIGH
MapSVG < 8.6.13 - Missing Authorization
CVSS 7.5
CVE-2025-47529 MEDIUM
UX Design Experts Experto CTA Widget - Info Disclosure
CVSS 6.5
CVE-2025-46488 HIGH
dastan800 Visual Builder -n/a-1.2.2 - XSS
CVSS 7.1
CVE-2025-39536 HIGH
Chimpstudio JobHunt Job Alerts <3.6 - Info Disclosure
CVSS 8.2
CVE-2025-2506 MEDIUM
pglogical <3.x - Privilege Escalation
CVSS 5.3
CVE-2025-47942 MEDIUM
Open edX Platform - Info Disclosure
CVSS 5.3
CVE-2025-5033 MEDIUM
TeaCMS 2.0.2 - Cross-Site Request Forgery in User Management
CVSS 4.3
CVE-2025-48009 LOW
Drupal Single Content Sync < 1.4.12 - Missing Authorization
CVSS 3.1
CVE-2025-4105 MEDIUM
Splitit WordPress <4.2.8 - Info Disclosure
CVSS 5.4
CVE-2025-41231 HIGH
VMware Cloud Foundation 4.5-4.5.1 - Missing Authorization
CVSS 7.3
CVE-2025-39352 HIGH
ThemeGoods Grand Restaurant <= 7.0 - Missing Authorization
CVSS 8.2
CVE-2025-39350 HIGH
Rocket Apps wProject <5.8.0 - Info Disclosure
CVSS 8.2
CVE-2025-43838 MEDIUM
ChoPlugins Custom PC Builder Lite - Privilege Escalation
CVSS 6.5
CVE-2025-39451 HIGH
Crocoblock JetBlocks For Elementor <1.3.16 - Info Disclosure
CVSS 7.5
CVE-2025-39449 HIGH
Crocoblock JetWooBuilder <2.1.18 - Info Disclosure
CVSS 7.5
CVE-2025-39447 HIGH
Crocoblock JetElements For Elementor <2.7.4.1 - Info Disclosure
CVSS 7.5
CVE-2025-39460 MEDIUM
ThimPress Eduma <5.6.4 - Info Disclosure
CVSS 5.3
CVE-2025-39454 MEDIUM
Jeroen Peters Name Directory <1.30.0 - Info Disclosure
CVSS 4.3
CVE-2025-39412 MEDIUM
averta Master Slider <= 3.11.0 - Missing Authorization
CVSS 4.3
CVE-2025-39398 MEDIUM
Themovation Hotel + Bed and Breakfast Booking Calendar Theme <4.2.2...
CVSS 4.3
Details
Vulnerabilities 8,331
Exploit Likelihood High