CWE-862

High likelihood

Missing Authorization

Parent: CWE-285 - Improper Authorization

The product does not perform an authorization check when an actor attempts to access a resource or perform an action.

8,213 vulnerabilities with CWE-862
CVE-2026-27388 HIGH
DesignThemes Booking Manager <=2.0 - Auth Bypass
CVSS 7.5
CVE-2026-27386 HIGH
DesignThemes Directory Addon <=1.8 - Auth Bypass
CVSS 7.5
CVE-2026-27374 HIGH
WooCommerce Order Details <=3.1 - Auth Bypass
CVSS 7.5
CVE-2026-27362 MEDIUM
WP Bakery Autoresponder Addon <=1.0.6 - Auth Bypass
CVSS 6.5
CVE-2026-27361 HIGH
Responsive Posts Carousel Pro <=15.1 - Auth Bypass
CVSS 7.5
CVE-2026-27344 MEDIUM
inseriswiss inseri-core <=1.0.5 - Auth Bypass
CVSS 5.9
CVE-2026-23799 MEDIUM
Themeum Tutor LMS <=3.9.5 - Privilege Escalation
CVSS 6.5
CVE-2026-22479 HIGH
ThemeRuby Easy Post Submission <=2.2.0 - Auth Bypass
CVSS 7.5
CVE-2026-22459 MEDIUM
Blend Media WordPress CTA <=1.7.4 - Auth Bypass
CVSS 6.5
CVE-2026-2899 MEDIUM
Fluent Forms Pro Add On Pack <=6.1.17 - Auth Bypass
CVSS 6.5
CVE-2026-3056 MEDIUM
Seraphinite Accelerator <=2.28.14 - Auth Bypass
CVSS 4.3
CVE-2026-1674 MEDIUM
Gutena Forms <=1.6.0 - Privilege Escalation
CVSS 6.5
CVE-2026-2732 MEDIUM
Enable Media Replace 4.1.7 - Auth Bypass
CVSS 5.4
CVE-2026-3266 CRITICAL
OpenText Filr <25.1.2 - Auth Bypass
CVSS 9.8
CVE-2026-3351 MEDIUM
Canonical LXD 6.6 - Authenticated Certificate Enumeration via GET /1.0/certificates Endpoint
CVSS 4.3
CVE-2026-1336 MEDIUM
AI ChatBot with ChatGPT Plugin <=2.7.5 - Auth Bypass
CVSS 5.3
CVE-2026-0026 HIGH
PermissionManagerServiceImpl - Privilege Escalation
CVSS 7.8
CVE-2026-0024 MEDIUM
Android - Unauthenticated Local Information Disclosure via MediaProvider Content Resolver
CVSS 4.0
CVE-2026-3432 CRITICAL
SimStudio < 0.5.74 - Unauthenticated OAuth Token Theft via credentialAccountUserId and providerId Parameters
CVSS 9.1
CVE-2026-3431 CRITICAL
SimStudio <0.5.74 - Unauthenticated MongoDB Access
CVSS 9.8
CVE-2026-28557 MEDIUM
wpForo Forum 2.4.14 - Privilege Escalation
CVSS 6.5
CVE-2026-28556 MEDIUM
wpForo Forum 2.4.14 - Privilege Escalation
CVSS 5.4
CVE-2026-28555 MEDIUM
wpForo Forum 2.4.14 - Privilege Escalation
CVSS 4.3
CVE-2026-28554 MEDIUM
wpForo Forum 2.4.14 - Privilege Escalation
CVSS 4.3
CVE-2026-28515 HIGH
openDCIM 23.04 - Privilege Escalation
CVSS 8.8
Details
Vulnerabilities 8,213
Exploit Likelihood High