CWE-862

High likelihood

Missing Authorization

Parent: CWE-285 - Improper Authorization

The product does not perform an authorization check when an actor attempts to access a resource or perform an action.

8,281 vulnerabilities with CWE-862
CVE-2025-12963 CRITICAL
LazyTasks <1.2.29 - Privilege Escalation
CVSS 9.8
CVE-2025-12783 MEDIUM
Premmerce Brands for WooCommerce <1.2.13 - Info Disclosure
CVSS 4.3
CVE-2025-67636 MEDIUM
Jenkins < 2.528.3, 2.529-2.540 - Missing Authorization for Encrypted Password Viewing
CVSS 4.3
CVE-2025-67599 MEDIUM
WebToffee eCommerce Marketing Automation <2.1.1 - Info Disclosure
CVSS 4.3
CVE-2025-67597 MEDIUM
Shahjahan Jewel Fluent Booking <1.9.11 - RCE
CVSS 4.3
CVE-2025-67592 MEDIUM
Joe Dolson My Calendar <3.6.16 - RCE
CVSS 4.3
CVE-2025-67589 MEDIUM
WooCommerce PDF Invoices & Packing Slips <5.0 - Info Disclosure
CVSS 4.3
CVE-2025-67588 MEDIUM
Elementor <3.33.0 - Info Disclosure
CVSS 4.3
CVE-2025-67586 MEDIUM
Highlight and Share <= 5.2.0 - Missing Authorization
CVSS 4.7
CVE-2025-67584 MEDIUM
rtCamp GoDAM <=1.4.6 - Info Disclosure
CVSS 5.3
CVE-2025-67583 MEDIUM
IDonate <= 2.1.15 - Missing Authorization
CVSS 5.3
CVE-2025-67582 MEDIUM
Wbcom Designs <= 2.1.1 - Missing Authorization
CVSS 5.3
CVE-2025-67581 MEDIUM
TrueBooker <1.1.0 - Info Disclosure
CVSS 5.3
CVE-2025-67580 MEDIUM
Constant Contact + WooCommerce <= 2.4.1 - Info Disclosure
CVSS 5.3
CVE-2025-67579 MEDIUM
vanquish User Extra Fields <17 - RCE
CVSS 5.3
CVE-2025-67578 MEDIUM
WP Email Capture <3.12.4 - Info Disclosure
CVSS 5.3
CVE-2025-67577 MEDIUM
hassantafreshi Easy Form Builder <3.8.20 - RCE
CVSS 5.3
CVE-2025-67576 MEDIUM
QuantumCloud Simple Link Directory <= 8.8.3 - RCE
CVSS 5.3
CVE-2025-67575 MEDIUM
Sitewide Notice WP <2.4.1 - Info Disclosure
CVSS 5.3
CVE-2025-67574 MEDIUM
wpdevart Booking calendar <3.2.30 - RCE
CVSS 5.3
CVE-2025-67573 MEDIUM
ThimPress Sailing <4.4.6 - Info Disclosure
CVSS 5.3
CVE-2025-67572 MEDIUM
PenciDesign PenNews < 6.7.4 - Missing Authorization
CVSS 5.3
CVE-2025-67571 MEDIUM
WPFunnels <= 3.6.2 - Missing Authorization
CVSS 5.3
CVE-2025-67570 MEDIUM
GSheetConnector <4.0.0 - Info Disclosure
CVSS 5.3
CVE-2025-67569 MEDIUM
scriptsbundle AdForest <= 6.0.11 - Info Disclosure
CVSS 5.3
Details
Vulnerabilities 8,281
Exploit Likelihood High