CWE-862

High likelihood

Missing Authorization

Parent: CWE-285 - Improper Authorization

The product does not perform an authorization check when an actor attempts to access a resource or perform an action.

8,345 vulnerabilities with CWE-862
CVE-2025-22607 MEDIUM
Coolify < 4.0.0-beta.361 - Authenticated Information Disclosure via GitHub/GitLab Configuration UUID
CVSS 5.5
CVE-2025-24403 MEDIUM
Jenkins Azure Service Fabric Plugin < 1.6 - Missing Authorization for Azure Credential ID Enumeration
CVSS 4.3
CVE-2025-23684 MEDIUM
Eugen Bobrowski Debug Tool <2.2 - Info Disclosure
CVSS 4.3
CVE-2025-23512 HIGH
Team 118GROUP Agent <= 1.6.0 - Unauthenticated Arbitrary Content Deletion
CVSS 7.5
CVE-2025-23486 MEDIUM
NotFound Database Sync <0.5.2 - Info Disclosure
CVSS 6.5
CVE-2025-21527 MEDIUM
Oracle JD Edwards EnterpriseOne Tools < 9.2.9.0 - Unauthenticated Missing Authorization via HTTP
CVSS 6.1
CVE-2025-21514 MEDIUM
Oracle JD Edwards EnterpriseOne Tools < 9.2.9.0 - Unauthenticated Unauthorized Data Read via Web Runtime SEC
CVSS 5.3
CVE-2025-21498 MEDIUM
Oracle HTTP Server 12.2.1.4.0 - Unauthenticated Unauthorized Data Read via HTTP
CVSS 5.3
CVE-2025-24461 MEDIUM
JetBrains TeamCity < 2024.12.1 - Unauthenticated Decryption of Connection Secrets via Test Connection Endpoint
CVSS 6.5
CVE-2025-23477 HIGH
Realty Workstation <1.0.45 - Info Disclosure
CVSS 8.2
CVE-2025-22722 MEDIUM
Widget Options <4.0.8 - Info Disclosure
CVSS 4.3
CVE-2025-22721 MEDIUM
Farhan Noor ApplyOnline - Info Disclosure
CVSS 4.3
CVE-2025-22717 HIGH
Joe Dolson My Tickets <2.0.9 - Info Disclosure
CVSS 7.5
CVE-2025-22318 HIGH
Eniture Technology Standard Box Sizes - WooCommerce <1.6.13 - Info ...
CVSS 7.5
CVE-2025-0515 MEDIUM
The Buzz Club - Night Club, DJ and Music Festival Event WordPress T...
CVSS 4.3
CVE-2025-23963 MEDIUM
Mark Posts <= 2.2.4 - Missing Authorization
CVSS 5.4
CVE-2025-23962 MEDIUM
Goldstar <= 2.1.1 - Missing Authorization
CVSS 4.3
CVE-2025-23961 MEDIUM
WP Tasker WordPress Graphs & Charts <2.0.8 - Info Disclosure
CVSS 5.4
CVE-2025-23957 MEDIUM
Sur.ly <= 3.0.3 - Missing Authorization
CVSS 4.3
CVE-2025-23955 MEDIUM
Xola <= 1.6 - Missing Authorization
CVSS 4.3
CVE-2025-23954 MEDIUM
AWcode & KingfisherFox Salvador - Info Disclosure
CVSS 4.3
CVE-2025-23930 MEDIUM
iTechArt-Group PayPal Marketing Solutions - Info Disclosure
CVSS 4.3
CVE-2025-23929 MEDIUM
wishfulthemes Email Capture & Lead Generation <1.0.2 - Info Disclosure
CVSS 4.3
CVE-2025-23917 MEDIUM
Chamber Dashboard Business Directory <3.3.8 - RCE
CVSS 5.4
CVE-2025-23916 MEDIUM
Nuanced Media WP Meetup <2.3.0 - Info Disclosure
CVSS 5.4
Details
Vulnerabilities 8,345
Exploit Likelihood High