CWE-862

High likelihood

Missing Authorization

Parent: CWE-285 - Improper Authorization

The product does not perform an authorization check when an actor attempts to access a resource or perform an action.

8,352 vulnerabilities with CWE-862
CVE-2024-56008 HIGH
Spreadr Woocommerce <1.0.5 - Info Disclosure
CVSS 7.5
CVE-2024-55997 MEDIUM
Web Chunky Order Delivery & Pickup Location Date Time <1.1.0 - Priv...
CVSS 6.5
CVE-2024-52485 MEDIUM
Yudiz Solutions Ltd. WP Menu Image <2.2 - RCE
CVSS 6.5
CVE-2024-11926 MEDIUM
Travel Booking WordPress Theme <=3.1.6 - Info Disclosure
CVSS 6.5
CVE-2024-12596 MEDIUM
LifterLMS < 7.8.6 - Authenticated Arbitrary Post Deletion via llms_delete_cert Action
CVSS 4.3
CVE-2024-12259 HIGH
WordPress RepairBuddy <3.8120 - Privilege Escalation
CVSS 8.8
CVE-2024-56003 MEDIUM
Caldera SMTP Mailer <1.0.1 - Info Disclosure
CVSS 4.3
CVE-2024-55999 MEDIUM
Marco Giannini XML Multilanguage Sitemap Generator - Info Disclosure
CVSS 5.3
CVE-2024-56009 MEDIUM
Spreadr Woocommerce <1.0.4 - Info Disclosure
CVSS 5.3
CVE-2024-56007 MEDIUM
Ram Segev Leader <2.6.1 - Privilege Escalation
CVSS 4.3
CVE-2024-56004 MEDIUM
Alex W Fowler Easy Site Importer <1.0.1 - RCE
CVSS 5.4
CVE-2024-56001 MEDIUM
Ksher <= 1.1.1 - Missing Authorization
CVSS 6.5
CVE-2024-55998 MEDIUM
Popup Surveys & Polls for WordPress - RCE
CVSS 5.4
CVE-2024-55996 MEDIUM
Dreamfox Media Payment <3.5.6 - RCE
CVSS 6.1
CVE-2024-55994 MEDIUM
<= 2.0.5 - Missing Authorization
CVSS 4.3
CVE-2024-55993 MEDIUM
PickPlugins Job Board Manager <2.1.60 - Info Disclosure
CVSS 5.3
CVE-2024-55992 MEDIUM
Open Tools WooCommerce Basic Ordernumbers <1.4.4 - Info Disclosure
CVSS 5.4
CVE-2024-54417 MEDIUM
Pixelgrade PixProof <2.0.1 - Info Disclosure
CVSS 5.3
CVE-2024-54402 MEDIUM
Jozoor Arabic Webfonts <1.4.6 - Info Disclosure
CVSS 4.3
CVE-2024-54384 MEDIUM
eLightUp Falcon - WordPress Optimizations & Tweaks <2.8.3 - Info Di...
CVSS 4.3
CVE-2024-54379 HIGH
Blokhaus Minterpress <1.0.5 - Privilege Escalation
CVSS 8.8
CVE-2024-54378 HIGH
Quietly Quietly Insights <1.2.2 - Privilege Escalation
CVSS 8.8
CVE-2024-54369 CRITICAL
ThemeHunk Zita Site Builder <1.0.2 - Info Disclosure
CVSS 9.1
CVE-2024-54359 HIGH
Banner System <1.0.0 - Info Disclosure
CVSS 8.2
CVE-2024-54354 MEDIUM
Beat Kueffer Termin-Kalender <0.99.47 - XSS
CVSS 6.5
Details
Vulnerabilities 8,352
Exploit Likelihood High