CWE-862

High likelihood

Missing Authorization

Parent: CWE-285 - Improper Authorization

The product does not perform an authorization check when an actor attempts to access a resource or perform an action.

8,316 vulnerabilities with CWE-862
CVE-2025-62995 MEDIUM
MultiParcels Shipping For WooCommerce <1.30.12 - Info Disclosure
CVSS 4.3
CVE-2025-62993 MEDIUM
Notification for Telegram <3.4.7 - RCE
CVSS 4.3
CVE-2025-62870 MEDIUM
Eupago Gateway For Woocommerce <4.6.3 - Info Disclosure
CVSS 5.3
CVE-2025-62869 MEDIUM
Gravitec.net - Web Push Notifications <2.9.17 - Info Disclosure
CVSS 4.3
CVE-2025-62867 MEDIUM
Ergonet Cache <= 1.0.13 - Missing Authorization
CVSS 4.3
CVE-2025-62865 MEDIUM
Evan Herman Post Cloner <1.0.0 - Info Disclosure
CVSS 5.3
CVE-2025-62740 MEDIUM
Mario Peshev WP-CRM System <3.4.5 - Info Disclosure
CVSS 5.3
CVE-2025-62738 MEDIUM
Formstack Online Forms <2.0.2 - RCE
CVSS 5.3
CVE-2025-62736 MEDIUM
opicron Image Cleanup <= 1.9.2 - Info Disclosure
CVSS 4.3
CVE-2025-62153 MEDIUM
Graham Quick Interest Slider <= 3.1.5 - Info Disclosure
CVSS 5.3
CVE-2025-62152 MEDIUM
ConveyThis <= 269.2 - Missing Authorization
CVSS 5.3
CVE-2025-62151 MEDIUM
Virtuaria PagBank/PagSeguro <3.6.3 - Privilege Escalation
CVSS 5.3
CVE-2025-62100 MEDIUM
ThemeRain Core <= 1.1.9 - Missing Authorization
CVSS 5.3
CVE-2025-62090 MEDIUM
Jegstudio Gutenverse News - Auth Bypass
CVSS 6.5
CVE-2025-62086 MEDIUM
akazanstev Yandex Dostavka (Boxberry) <=2.32 - Auth Bypass
CVSS 5.4
CVE-2025-62085 MEDIUM
BERTHA AI <= 1.13 - Missing Authorization
CVSS 5.3
CVE-2025-49350 MEDIUM
Actionwear products sync <2.3.3 - RCE
CVSS 4.3
CVE-2025-49348 MEDIUM
Hype <= 1.0.5 - Missing Authorization
CVSS 5.3
CVE-2025-42891 MEDIUM
SAP Enterprise Search - Info Disclosure
CVSS 5.5
CVE-2025-48608 MEDIUM
Android - Missing Authorization in SettingsProvider isValidMediaUri
CVSS 5.5
CVE-2025-48614 MEDIUM
Android - Unauthenticated Physical Denial of Service via Factory Reset in DSU Mode
CVSS 4.6
CVE-2025-48604 MEDIUM
Google Android Local - Information Disclosure
CVSS 5.5
CVE-2025-48600 MEDIUM
Android - Unauthenticated Local Information Disclosure via Missing Permission Check
CVSS 5.5
CVE-2025-48599 HIGH
WifiScanModeActivity - Privilege Escalation
CVSS 7.8
CVE-2025-48591 MEDIUM
Google Android Missing Permission Check - Information Disclosure
CVSS 5.5
Details
Vulnerabilities 8,316
Exploit Likelihood High