The product does not perform an authorization check when an actor attempts to access a resource or perform an action.
8,324 vulnerabilities with CWE-862
CVE-2025-64234
MEDIUM
Evergreen Content Poster <1.4.5 - Info Disclosure
CVSS 4.3
CVE-2025-64229
MEDIUM
BoldGrid Client Invoicing <20.8.7 - Info Disclosure
CVSS 4.3
CVE-2025-64219
MEDIUM
Strategy11 Team Business Directory <6.4.18 - RCE
CVSS 4.3
CVE-2025-64212
MEDIUM
StylemixThemes MasterStudy LMS Pro - Info Disclosure
CVSS 5.4
CVE-2025-64211
MEDIUM
StylemixThemes Masterstudy Elementor Widgets <= 1.2.4 - Info Disclo...
CVSS 5.3
CVE-2025-64210
MEDIUM
StylemixThemes Masterstudy Elementor Widgets <1.2.5 - Info Disclosure
CVSS 5.4
CVE-2025-64199
MEDIUM
WpEstate wpresidence <= 5.3.2 - Missing Authorization
CVSS 5.3
CVE-2025-58711
MEDIUM
solwin Blog Designer PRO <3.4.8 - Info Disclosure
CVSS 5.3
CVE-2025-11702
HIGH
GitLab 17.1.0-18.3.4, 18.4.0-18.4.2, 18.5.0 - Authenticated Project Runner Hijacking via Missing Authorization
CVSS 8.5
CVE-2025-11705
MEDIUM
WordPress Anti-Malware Security - Info Disclosure
CVSS 6.5
CVE-2025-64296
MEDIUM
Facebook for WooCommerce <3.5.7 - Info Disclosure
CVSS 5.3
CVE-2025-59461
HIGH
SICK tloc100-100_firmware - Unauthenticated Missing Authorization via C++ API
CVSS 7.6
CVE-2025-62980
MEDIUM
MDZ Persian Admnin Fonts <4.1.03. - Info Disclosure
CVSS 5.4
CVE-2025-62978
MEDIUM
KiotViet Sync <1.8.6 - Info Disclosure
CVSS 4.3
CVE-2025-62977
MEDIUM
Baidu SEO Collection <=2.1.3 - Auth Bypass
CVSS 5.3
CVE-2025-62976
MEDIUM
Joovii Sendle Shipping <= 6.02 - RCE
CVSS 5.3
CVE-2025-62973
MEDIUM
Themekraft BuddyForms <2.9.0 - Info Disclosure
CVSS 5.3
CVE-2025-62972
MEDIUM
WordPress WebinarPress <= 1.33.28 - Missing Authorization Access Control Bypass
CVSS 4.3
CVE-2025-62970
MEDIUM
Link Whisper Free <0.9 - Info Disclosure
CVSS 5.3
CVE-2025-62966
MEDIUM
Apiki GoCache <= 1.3.6 - Missing Authorization
CVSS 5.4
CVE-2025-62965
MEDIUM
wpseek Admin Management Xtended <2.5.1 - Info Disclosure
CVSS 5.5
CVE-2025-62964
MEDIUM
RealMag777 MDTF <1.3.4 - Info Disclosure
CVSS 5.3
CVE-2025-62954
MEDIUM
Codeinwp Revive Old Posts <10 - RCE
CVSS 4.3
CVE-2025-62953
MEDIUM
Welcart e-Commerce <2.11.24 - Info Disclosure
CVSS 4.3
CVE-2025-62952
MEDIUM
QuantumCloud ChatBot <= 7.7.3 - Missing Authorization
CVSS 4.3
Details
Vulnerabilities
8,324
Exploit Likelihood
High