The product does not perform an authorization check when an actor attempts to access a resource or perform an action.
8,280 vulnerabilities with CWE-862
CVE-2025-66134
MEDIUM
NinjaTeam FileBird Pro <6.4.9 - Info Disclosure
CVSS 5.4
CVE-2025-66133
MEDIUM
WP Legal Pages WP Cookie Notice - RCE
CVSS 5.3
CVE-2025-66131
MEDIUM
yaadsarig Yaad Sarig Payment Gateway For WC <= 2.2.10 - Info Disclo...
CVSS 5.3
CVE-2025-66130
MEDIUM
etruel WP Views Counter <2.1.2 - Info Disclosure
CVSS 5.3
CVE-2025-66129
MEDIUM
Pochipp <2.19.0 - Privilege Escalation
CVSS 5.3
CVE-2025-66128
MEDIUM
Sendinblue for WooCommerce <4.0.50 - RCE
CVSS 5.3
CVE-2025-66127
MEDIUM
g5theme Essential Real Estate <5.2.2 - Info Disclosure
CVSS 5.3
CVE-2025-66124
MEDIUM
ZEEN101 Leaky Paywall <= 4.22.5 - Info Disclosure
CVSS 5.3
CVE-2025-66122
MEDIUM
Stylish Price List <= 7.2.2 - Missing Authorization
CVSS 5.3
CVE-2025-66121
MEDIUM
SiteGround Security <= 1.5.8 - Missing Authorization
CVSS 5.3
CVE-2025-66120
MEDIUM
CatFolders <= 2.5.3 - Missing Authorization
CVSS 5.3
CVE-2025-64639
MEDIUM
WP Compress for MainWP <= 6.50.17 - Missing Authorization
CVSS 5.3
CVE-2025-64638
MEDIUM
OnPay.io for WooCommerce <1.0.47 - RCE
CVSS 5.3
CVE-2025-64635
MEDIUM
Feeds for YouTube <2.4.0 - Info Disclosure
CVSS 5.3
CVE-2025-64634
MEDIUM
ThemeFusion Avada <= 7.13.2 - Missing Authorization
CVSS 5.3
CVE-2025-64632
MEDIUM
Auctollo Google XML Sitemaps <4.1.21 - Info Disclosure
CVSS 5.3
CVE-2025-64631
MEDIUM
WC Lovers WCFM Marketplace <3.6.15 - RCE
CVSS 4.9
CVE-2025-64630
MEDIUM
Strategy11 Team Business Directory <6.4.19 - RCE
CVSS 4.9
CVE-2025-64251
MEDIUM
azzaroco Ultimate Learning Pro <4.0 - RCE
CVSS 4.9
CVE-2025-64249
MEDIUM
Protect WP Admin <= 4.1 - Missing Authorization
CVSS 5.3
CVE-2025-64248
MEDIUM
emarket-design Request a Quote <= 2.5.3 - Missing Authorization
CVSS 4.3
CVE-2025-64247
MEDIUM
edmon.parker <3.5.4.1 - Info Disclosure
CVSS 4.3
CVE-2025-64246
MEDIUM
Accessibility by AudioEye <1.0.49 - RCE
CVSS 4.3
CVE-2025-64245
MEDIUM
Import external attachments <= 1.5.12 - Missing Authorization
CVSS 4.3
CVE-2025-64244
MEDIUM
Restrict Elementor Widgets - Auth Bypass
CVSS 4.3
Details
Vulnerabilities
8,280
Exploit Likelihood
High