The product does not perform an authorization check when an actor attempts to access a resource or perform an action.
8,344 vulnerabilities with CWE-862
CVE-2025-24116
MEDIUM
macOS < 13.7.3, < 14.7.3, < 15.3 - Missing Authorization
CVSS 4.4
CVE-2025-24108
MEDIUM
macOS < 15.3 - Unprotected User Data Exposure via Sandbox Restriction Bypass
CVSS 5.5
CVE-2025-24096
MEDIUM
macOS < 15.3 - Unauthorized Arbitrary File Access
CVSS 5.5
CVE-2025-24747
MEDIUM
Houzez <= 3.4.0 - Missing Authorization
CVSS 5.3
CVE-2025-24744
MEDIUM
NotFound Bridge Core <3.3 - Info Disclosure
CVSS 4.3
CVE-2025-24743
MEDIUM
Rometheme RomethemeKit For Elementor <1.5.2 - Auth Bypass
CVSS 4.3
CVE-2025-24734
HIGH
CodeSolz Better Find and Replace <1.6.7 - Privilege Escalation
CVSS 8.8
CVE-2025-24662
MEDIUM
LearnDash LMS <4.20.0.1 - Info Disclosure
CVSS 5.3
CVE-2025-24653
MEDIUM
NotFound ASE Pro <7.6.1.1 - Info Disclosure
CVSS 4.3
CVE-2025-24606
MEDIUM
Sprout Invoices Client Invoicing <20.8.1 - Info Disclosure
CVSS 6.4
CVE-2025-24603
MEDIUM
UkrSolution Print Barcode Labels <3.4.10 - Info Disclosure
CVSS 4.3
CVE-2025-24600
MEDIUM
RSVPMarker <11.4.5 - Info Disclosure
CVSS 5.3
CVE-2025-24590
MEDIUM
picu - Online Photo Proofing Gallery <= 2.4.0 - Missing Authorization
CVSS 5.3
CVE-2025-23982
HIGH
Marian Kanev Cab fare calculator <1.1 - XSS
CVSS 7.1
CVE-2025-23849
MEDIUM
PAPERCITE <0.5.19 - Info Disclosure
CVSS 5.4
CVE-2025-23656
MEDIUM
Donate visa <= 1.0.0 - Stored Cross-Site Scripting via Missing Authorization
CVSS 6.5
CVE-2025-23529
MEDIUM
Blokhaus Minterpress <1.0.5 - Info Disclosure
CVSS 6.5
CVE-2025-24754
MEDIUM
Houzez <= 3.4.0 - Missing Authorization
CVSS 4.3
CVE-2025-24584
MEDIUM
BdThemes Ultimate Store Kit Elementor Addons <2.3.0 - Info Disclosure
CVSS 4.3
CVE-2025-24753
MEDIUM
Gutenberg Blocks by Kadence Blocks <= 3.3.1 - Missing Authorization
CVSS 4.3
CVE-2025-24751
MEDIUM
GoDaddy CoBlocks <= 3.1.13 - Missing Authorization
CVSS 4.3
CVE-2025-24750
MEDIUM
ExactMetrics <8.1.0 - Info Disclosure
CVSS 5.4
CVE-2025-24736
MEDIUM
metaphorcreations Post Duplicator <= 2.35 - Missing Authorization
CVSS 4.3
CVE-2025-24725
MEDIUM
ThimPress Thim Elementor Kit <1.2.8 - Info Disclosure
CVSS 4.3
CVE-2025-24705
MEDIUM
Arshid WooCommerce Quick View <1.1.1 - RCE
CVSS 5.3
Details
Vulnerabilities
8,344
Exploit Likelihood
High