CWE-862

High likelihood

Missing Authorization

Parent: CWE-285 - Improper Authorization

The product does not perform an authorization check when an actor attempts to access a resource or perform an action.

8,332 vulnerabilities with CWE-862
CVE-2025-46519 MEDIUM
Media Library Downloader <1.3.1 - Info Disclosure
CVSS 4.3
CVE-2025-46489 MEDIUM
vinodvaswani9 Bulk Assign Linked Products For WooCommerce <2.1 - RCE
CVSS 5.3
CVE-2025-46485 MEDIUM
WP Customize Login Page <1.6.5 - Info Disclosure
CVSS 5.3
CVE-2025-46470 MEDIUM
Peter Raschendorfer Smart Hashtags <7.2.3 - Info Disclosure
CVSS 4.3
CVE-2025-39390 MEDIUM
Booking and Rental Manager <2.3.8 - Info Disclosure
CVSS 5.3
CVE-2025-39385 MEDIUM
VW Themes Sirat <1.5.1 - Info Disclosure
CVSS 4.3
CVE-2025-3604 CRITICAL
Flynax Bridge < 2.2.0 - Unauthenticated Privilege Escalation via Email Update
CVSS 9.8
CVE-2025-3058 HIGH
Xelion Webchat plugin <9.1.0 - Privilege Escalation
CVSS 8.8
CVE-2025-1021 HIGH
Synology DiskStation Manager < 7.1.1-42962-8 - Unauthenticated Arbitrary File Read via synocopy
CVSS 7.5
CVE-2025-37087 CRITICAL
HPE Performance Cluster Manager - Info Disclosure
CVSS 9.8
CVE-2025-46247 MEDIUM
Appointment Booking Calendar <1.3.92 - Info Disclosure
CVSS 5.3
CVE-2025-46244 MEDIUM
Dotstore Advanced Linked Variations - Info Disclosure
CVSS 5.3
CVE-2025-46232 MEDIUM
alttext-ai <= 1.9.93 - Missing Authorization
CVSS 4.3
CVE-2025-3843 MEDIUM
panhainan DS-Java 1.0 - Cross-Site Request Forgery
CVSS 4.3
CVE-2025-28103 MEDIUM
flaskBlog 2.6.1 - Unauthenticated Arbitrary User Account Deletion
CVSS 6.4
CVE-2025-2298 HIGH
Dremio Software - Privilege Escalation
CVE-2025-3808 MEDIUM
zhenfeng13 My-BBS 1.0 - Cross-Site Request Forgery
CVSS 4.3
CVE-2025-3124 MEDIUM
GitHub Enterprise Server < 3.13.14 - Missing Authorization in Security Overview Repository Name Disclosure
CVSS 4.3
CVE-2025-39583 HIGH
BERTHA AI <1.12.10.2 - Info Disclosure
CVSS 7.1
CVE-2025-39580 MEDIUM
jidaikobo Dashi <3.1.8 - Info Disclosure
CVSS 5.8
CVE-2025-39559 MEDIUM
Bring Fraktguiden for WooCommerce <1.11.4 - Privilege Escalation
CVSS 6.5
CVE-2025-39554 MEDIUM
RelyWP AI Text to Speech <3.0.3 - Privilege Escalation
CVSS 6.5
CVE-2025-39533 HIGH
Starfish Review Generation & Marketing <3.1.14 - Privilege Escalation
CVSS 8.8
CVE-2025-39532 HIGH
Spice Blocks <2.0.7.1 - Info Disclosure
CVSS 7.5
CVE-2025-39457 MEDIUM
Booking and Rental Manager <2.2.8 - Privilege Escalation
CVSS 5.3
Details
Vulnerabilities 8,332
Exploit Likelihood High