The product does not perform an authorization check when an actor attempts to access a resource or perform an action.
8,332 vulnerabilities with CWE-862
CVE-2025-46519
MEDIUM
Media Library Downloader <1.3.1 - Info Disclosure
CVSS 4.3
CVE-2025-46489
MEDIUM
vinodvaswani9 Bulk Assign Linked Products For WooCommerce <2.1 - RCE
CVSS 5.3
CVE-2025-46485
MEDIUM
WP Customize Login Page <1.6.5 - Info Disclosure
CVSS 5.3
CVE-2025-46470
MEDIUM
Peter Raschendorfer Smart Hashtags <7.2.3 - Info Disclosure
CVSS 4.3
CVE-2025-39390
MEDIUM
Booking and Rental Manager <2.3.8 - Info Disclosure
CVSS 5.3
CVE-2025-39385
MEDIUM
VW Themes Sirat <1.5.1 - Info Disclosure
CVSS 4.3
CVE-2025-3604
CRITICAL
Flynax Bridge < 2.2.0 - Unauthenticated Privilege Escalation via Email Update
CVSS 9.8
CVE-2025-3058
HIGH
Xelion Webchat plugin <9.1.0 - Privilege Escalation
CVSS 8.8
CVE-2025-1021
HIGH
Synology DiskStation Manager < 7.1.1-42962-8 - Unauthenticated Arbitrary File Read via synocopy
CVSS 7.5
CVE-2025-37087
CRITICAL
HPE Performance Cluster Manager - Info Disclosure
CVSS 9.8
CVE-2025-46247
MEDIUM
Appointment Booking Calendar <1.3.92 - Info Disclosure
CVSS 5.3
CVE-2025-46244
MEDIUM
Dotstore Advanced Linked Variations - Info Disclosure
CVSS 5.3
CVE-2025-46232
MEDIUM
alttext-ai <= 1.9.93 - Missing Authorization
CVSS 4.3
CVE-2025-3843
MEDIUM
panhainan DS-Java 1.0 - Cross-Site Request Forgery
CVSS 4.3
CVE-2025-28103
MEDIUM
flaskBlog 2.6.1 - Unauthenticated Arbitrary User Account Deletion
CVSS 6.4
CVE-2025-2298
HIGH
Dremio Software - Privilege Escalation
CVE-2025-3808
MEDIUM
zhenfeng13 My-BBS 1.0 - Cross-Site Request Forgery
CVSS 4.3
CVE-2025-3124
MEDIUM
GitHub Enterprise Server < 3.13.14 - Missing Authorization in Security Overview Repository Name Disclosure
CVSS 4.3
CVE-2025-39583
HIGH
BERTHA AI <1.12.10.2 - Info Disclosure
CVSS 7.1
CVE-2025-39580
MEDIUM
jidaikobo Dashi <3.1.8 - Info Disclosure
CVSS 5.8
CVE-2025-39559
MEDIUM
Bring Fraktguiden for WooCommerce <1.11.4 - Privilege Escalation
CVSS 6.5
CVE-2025-39554
MEDIUM
RelyWP AI Text to Speech <3.0.3 - Privilege Escalation
CVSS 6.5
CVE-2025-39533
HIGH
Starfish Review Generation & Marketing <3.1.14 - Privilege Escalation
CVSS 8.8
CVE-2025-39532
HIGH
Spice Blocks <2.0.7.1 - Info Disclosure
CVSS 7.5
CVE-2025-39457
MEDIUM
Booking and Rental Manager <2.2.8 - Privilege Escalation
CVSS 5.3
Details
Vulnerabilities
8,332
Exploit Likelihood
High