CWE-862

High likelihood

Missing Authorization

Parent: CWE-285 - Improper Authorization

The product does not perform an authorization check when an actor attempts to access a resource or perform an action.

8,333 vulnerabilities with CWE-862
CVE-2025-32201 MEDIUM
Xpro Theme Builder <1.2.8.3 - Info Disclosure
CVSS 4.3
CVE-2025-32178 MEDIUM
6Storage Rentals <2.18.0 - Info Disclosure
CVSS 5.4
CVE-2025-32147 HIGH
Coothemes Easy WP Optimizer <1.1.0 - Info Disclosure
CVSS 8.8
CVE-2025-31381 MEDIUM
shiptrack Booking Calendar & Notification <4.0.3 - Info Disclosure
CVSS 6.5
CVE-2025-22285 MEDIUM
Eniture Technology Pallet Packaging - Info Disclosure
CVSS 6.5
CVE-2025-2075 HIGH
Uncanny Automator < 6.3.0.2 - Authenticated Privilege Escalation via Missing Capability Checks
CVSS 8.8
CVE-2025-31909 HIGH
Apptivo Business Site CRM <5.3 - Info Disclosure
CVSS 7.5
CVE-2025-31896 MEDIUM
Istmoplugins GetBookingsWP <1.1.27 - RCE
CVSS 6.5
CVE-2025-31876 MEDIUM
gunnarpayday Payday <3.3.12 - Info Disclosure
CVSS 5.8
CVE-2025-31858 MEDIUM
Local Magic <= 2.9.0 - Missing Authorization
CVSS 6.5
CVE-2025-31841 MEDIUM
FPW Category Thumbnails <1.9.5 - Info Disclosure
CVSS 6.3
CVE-2025-31795 MEDIUM
Shopify to WooCommerce Migration <1.3.0 - Privilege Escalation
CVSS 6.5
CVE-2025-31794 MEDIUM
WR Price List Manager For Woocommerce <1.0.9 - Info Disclosure
CVSS 5.4
CVE-2025-31789 MEDIUM
Matat Technologies TextMe SMS <1.9.1 - Info Disclosure
CVSS 6.5
CVE-2025-31768 MEDIUM
OTWthemes Widget Manager Light <1.18 - RCE
CVSS 6.5
CVE-2025-31758 MEDIUM
BinaryCarpenter Free Woocommerce Product Table View <1.78 - Info Di...
CVSS 6.5
CVE-2025-31746 MEDIUM
Think201 Clients <1.1.4 - Info Disclosure
CVSS 6.4
CVE-2025-31739 MEDIUM
Minimalistic Event Manager <1.1.1 - Info Disclosure
CVSS 6.4
CVE-2025-31736 MEDIUM
Rich Text Editor <= 1.0.1 - Missing Authorization
CVSS 6.5
CVE-2025-31729 MEDIUM
WooTumblog <2.1.4 - Info Disclosure
CVSS 6.5
CVE-2025-31581 MEDIUM
Sandeep Kumar WP Video Playlist <1.1.2 - Info Disclosure
CVSS 6.5
CVE-2025-31541 MEDIUM
TuriTop Booking System <1.0.10 - Info Disclosure
CVSS 6.5
CVE-2025-30916 MEDIUM
enuiretechnology Residential Address Detection <2.5.4 - Info Disclo...
CVSS 6.5
CVE-2025-30915 MEDIUM
enuiretechnology Small Package Quotes - Worldwide Express Edition <...
CVSS 6.5
CVE-2025-3150 MEDIUM
itning Student Homework Management System < 1.2.7 - Cross-Site Request Forgery
CVSS 4.3
Details
Vulnerabilities 8,333
Exploit Likelihood High