The product does not perform an authorization check when an actor attempts to access a resource or perform an action.
8,397 vulnerabilities with CWE-862
CVE-2023-49858
MEDIUM
Austin Passy Custom Login <4.1.0 - Info Disclosure
CVSS 4.3
CVE-2023-49857
MEDIUM
Awesome Support <= 6.1.7 - Missing Authorization
CVSS 6.5
CVE-2023-49856
HIGH
Smart Forms <= 2.6.84 - Authenticated Arbitrary Options Change
CVSS 8.1
CVE-2023-49851
MEDIUM
ILMDESIGNS Square Thumbnails <1.1.1 - Info Disclosure
CVSS 5.3
CVE-2023-49850
MEDIUM
WP Simple HTML Sitemap < 2.7 - Missing Authorization
CVSS 5.3
CVE-2023-49849
MEDIUM
Aakash Chakravarthy Shortcoder <6.3 - Info Disclosure
CVSS 4.3
CVE-2023-49848
MEDIUM
Sharkdropship dropshipping for Aliexpress, eBay, Amazon, etsy <= 2.1.1 - Missing Authorization
CVSS 6.5
CVE-2023-49845
MEDIUM
Loud Dog Redirects <1.2.1 - Info Disclosure
CVSS 5.3
CVE-2023-49835
MEDIUM
Metaphor Creations Post Duplicator <= 2.31 - Missing Authorization
CVSS 4.3
CVE-2023-49832
MEDIUM
Paul Ryley Site Reviews <6.10.2 - Info Disclosure
CVSS 5.3
CVE-2023-49831
HIGH
RegistrationMagic <= 5.2.3.0 - Missing Authorization
CVSS 7.5
CVE-2023-49818
MEDIUM
Webflow Pages < 1.0.8 - Missing Authorization
CVSS 5.3
CVE-2023-49817
HIGH
Flexible Woocommerce Checkout Field Editor <2.0.1 - Info Disclosure
CVSS 8.2
CVE-2023-49758
MEDIUM
Veribo WP Booking System <2.0.19.2 - Privilege Escalation
CVSS 4.3
CVE-2023-49757
MEDIUM
Awesome Support <= 6.1.10 - Missing Authorization
CVSS 5.4
CVE-2023-49756
MEDIUM
Eventin <= 3.3.52 - Missing Authorization for Notice Dismissal
CVSS 5.4
CVE-2023-49755
MEDIUM
Elementor Timeline Widget <2.2 - RCE
CVSS 5.4
CVE-2023-49754
MEDIUM
Yogesh Pawar, Clarion Technologies Bulk Edit Post Titles <5.0.0 - RCE
CVSS 4.3
CVE-2023-49196
MEDIUM
PageLayer < 1.7.7 - Missing Authorization
CVSS 4.3
CVE-2023-49193
MEDIUM
NerdPress Social Pug <1.30.0 - Privilege Escalation
CVSS 5.3
CVE-2023-49192
MEDIUM
Clever Widgets Enhanced Text Widget <1.6.3 - RCE
CVSS 5.3
CVE-2023-49167
MEDIUM
Code4Life Database <1.2.4 - Privilege Escalation
CVSS 6.5
CVE-2023-49156
MEDIUM
GoDaddy Email Marketing <1.4.3 - Privilege Escalation
CVSS 4.3
CVE-2023-49154
MEDIUM
Wow-Company Button Generator <2.3.8 - Info Disclosure
CVSS 5.3
CVE-2023-48779
MEDIUM
360 Javascript Viewer <1.7.11 - Info Disclosure
CVSS 6.5
Details
Vulnerabilities
8,397
Exploit Likelihood
High