The product does not perform an authorization check when an actor attempts to access a resource or perform an action.
8,213 vulnerabilities with CWE-862
CVE-2026-27388
HIGH
DesignThemes Booking Manager <=2.0 - Auth Bypass
CVSS 7.5
CVE-2026-27386
HIGH
DesignThemes Directory Addon <=1.8 - Auth Bypass
CVSS 7.5
CVE-2026-27374
HIGH
WooCommerce Order Details <=3.1 - Auth Bypass
CVSS 7.5
CVE-2026-27362
MEDIUM
WP Bakery Autoresponder Addon <=1.0.6 - Auth Bypass
CVSS 6.5
CVE-2026-27361
HIGH
Responsive Posts Carousel Pro <=15.1 - Auth Bypass
CVSS 7.5
CVE-2026-27344
MEDIUM
inseriswiss inseri-core <=1.0.5 - Auth Bypass
CVSS 5.9
CVE-2026-23799
MEDIUM
Themeum Tutor LMS <=3.9.5 - Privilege Escalation
CVSS 6.5
CVE-2026-22479
HIGH
ThemeRuby Easy Post Submission <=2.2.0 - Auth Bypass
CVSS 7.5
CVE-2026-22459
MEDIUM
Blend Media WordPress CTA <=1.7.4 - Auth Bypass
CVSS 6.5
CVE-2026-2899
MEDIUM
Fluent Forms Pro Add On Pack <=6.1.17 - Auth Bypass
CVSS 6.5
CVE-2026-3056
MEDIUM
Seraphinite Accelerator <=2.28.14 - Auth Bypass
CVSS 4.3
CVE-2026-1674
MEDIUM
Gutena Forms <=1.6.0 - Privilege Escalation
CVSS 6.5
CVE-2026-2732
MEDIUM
Enable Media Replace 4.1.7 - Auth Bypass
CVSS 5.4
CVE-2026-3266
CRITICAL
OpenText Filr <25.1.2 - Auth Bypass
CVSS 9.8
CVE-2026-3351
MEDIUM
Canonical LXD 6.6 - Authenticated Certificate Enumeration via GET /1.0/certificates Endpoint
CVSS 4.3
CVE-2026-1336
MEDIUM
AI ChatBot with ChatGPT Plugin <=2.7.5 - Auth Bypass
CVSS 5.3
CVE-2026-0026
HIGH
PermissionManagerServiceImpl - Privilege Escalation
CVSS 7.8
CVE-2026-0024
MEDIUM
Android - Unauthenticated Local Information Disclosure via MediaProvider Content Resolver
CVSS 4.0
CVE-2026-3432
CRITICAL
SimStudio < 0.5.74 - Unauthenticated OAuth Token Theft via credentialAccountUserId and providerId Parameters
CVSS 9.1
CVE-2026-3431
CRITICAL
SimStudio <0.5.74 - Unauthenticated MongoDB Access
CVSS 9.8
CVE-2026-28557
MEDIUM
wpForo Forum 2.4.14 - Privilege Escalation
CVSS 6.5
CVE-2026-28556
MEDIUM
wpForo Forum 2.4.14 - Privilege Escalation
CVSS 5.4
CVE-2026-28555
MEDIUM
wpForo Forum 2.4.14 - Privilege Escalation
CVSS 4.3
CVE-2026-28554
MEDIUM
wpForo Forum 2.4.14 - Privilege Escalation
CVSS 4.3
CVE-2026-28515
HIGH
openDCIM 23.04 - Privilege Escalation
CVSS 8.8
Details
Vulnerabilities
8,213
Exploit Likelihood
High