The product does not perform an authorization check when an actor attempts to access a resource or perform an action.
8,281 vulnerabilities with CWE-862
CVE-2025-12963
CRITICAL
LazyTasks <1.2.29 - Privilege Escalation
CVSS 9.8
CVE-2025-12783
MEDIUM
Premmerce Brands for WooCommerce <1.2.13 - Info Disclosure
CVSS 4.3
CVE-2025-67636
MEDIUM
Jenkins < 2.528.3, 2.529-2.540 - Missing Authorization for Encrypted Password Viewing
CVSS 4.3
CVE-2025-67599
MEDIUM
WebToffee eCommerce Marketing Automation <2.1.1 - Info Disclosure
CVSS 4.3
CVE-2025-67597
MEDIUM
Shahjahan Jewel Fluent Booking <1.9.11 - RCE
CVSS 4.3
CVE-2025-67592
MEDIUM
Joe Dolson My Calendar <3.6.16 - RCE
CVSS 4.3
CVE-2025-67589
MEDIUM
WooCommerce PDF Invoices & Packing Slips <5.0 - Info Disclosure
CVSS 4.3
CVE-2025-67588
MEDIUM
Elementor <3.33.0 - Info Disclosure
CVSS 4.3
CVE-2025-67586
MEDIUM
Highlight and Share <= 5.2.0 - Missing Authorization
CVSS 4.7
CVE-2025-67584
MEDIUM
rtCamp GoDAM <=1.4.6 - Info Disclosure
CVSS 5.3
CVE-2025-67583
MEDIUM
IDonate <= 2.1.15 - Missing Authorization
CVSS 5.3
CVE-2025-67582
MEDIUM
Wbcom Designs <= 2.1.1 - Missing Authorization
CVSS 5.3
CVE-2025-67581
MEDIUM
TrueBooker <1.1.0 - Info Disclosure
CVSS 5.3
CVE-2025-67580
MEDIUM
Constant Contact + WooCommerce <= 2.4.1 - Info Disclosure
CVSS 5.3
CVE-2025-67579
MEDIUM
vanquish User Extra Fields <17 - RCE
CVSS 5.3
CVE-2025-67578
MEDIUM
WP Email Capture <3.12.4 - Info Disclosure
CVSS 5.3
CVE-2025-67577
MEDIUM
hassantafreshi Easy Form Builder <3.8.20 - RCE
CVSS 5.3
CVE-2025-67576
MEDIUM
QuantumCloud Simple Link Directory <= 8.8.3 - RCE
CVSS 5.3
CVE-2025-67575
MEDIUM
Sitewide Notice WP <2.4.1 - Info Disclosure
CVSS 5.3
CVE-2025-67574
MEDIUM
wpdevart Booking calendar <3.2.30 - RCE
CVSS 5.3
CVE-2025-67573
MEDIUM
ThimPress Sailing <4.4.6 - Info Disclosure
CVSS 5.3
CVE-2025-67572
MEDIUM
PenciDesign PenNews < 6.7.4 - Missing Authorization
CVSS 5.3
CVE-2025-67571
MEDIUM
WPFunnels <= 3.6.2 - Missing Authorization
CVSS 5.3
CVE-2025-67570
MEDIUM
GSheetConnector <4.0.0 - Info Disclosure
CVSS 5.3
CVE-2025-67569
MEDIUM
scriptsbundle AdForest <= 6.0.11 - Info Disclosure
CVSS 5.3
Details
Vulnerabilities
8,281
Exploit Likelihood
High