The Ni Sales Commission For WooCommerce plugin for WordPress is vulnerable to unauthorized access due to a missing capab
The Contact Form and Calls To Action by vcita plugin for WordPress is vulnerable to unauthorized modification of data du
The Custom Login Page Styler – Limit Login Attempts – Restrict Content With Login – Redirect After Login – Change Login
The RapidLoad – Optimize Web Vitals Automatically plugin for WordPress is vulnerable to unauthorized modification of dat
Missing Authorization vulnerability in averta Shortcodes and extra features for Phlox theme auxin-elements allows Exploi
Missing Authorization vulnerability in Marcus (aka @msykes) Meta Tag Manager meta-tag-manager.This issue affects Meta Ta
Missing Authorization vulnerability in Xfinitysoft Content Cloner super-seo-content-cloner allows Exploiting Incorrectly
Missing Authorization vulnerability in Dotstore Hide Shipping Method For WooCommerce hide-shipping-method-for-woocommerc
The Eventer plugin for WordPress is vulnerable to unauthorized access of data due to a missing capability check on the '
Missing Authorization vulnerability in famethemes OnePress onepress allows Exploiting Incorrectly Configured Access Cont
An issue has been discovered in GitLab EE affecting all versions starting from 15.2 prior to 16.9.7, starting from 16.10
A vulnerability, which was classified as problematic, was found in Webkul QloApps 1.6.1. Affected is the function logout
A vulnerability, which was classified as problematic, has been found in Mindskip xzs-mysql 学之思开源考试系统 3.9.0. Affected by
Missing Authorization vulnerability in Melodic Media Slide Banners slide-banners allows Exploiting Incorrectly Configure
Due to missing authorization check in an RFC enabled function module in transaction SDCCN, an authenticated attacker cou
Due to missing authorization check, an authenticated attacker could call a remote-enabled function module which allows t
The aDirectory – WordPress Directory Listing Plugin plugin for WordPress is vulnerable to unauthorized loss of data due
The WPSyncSheets Lite For WPForms – WPForms Google Spreadsheet Addon plugin for WordPress is vulnerable to unauthorized
The WP Table Manager plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on thew
A CWE-862 "Missing Authorization" in maxprofile/user-groups/routes.lua in Q-Free MaxTime less than or equal to version 2
The Rank Math SEO – AI SEO Tools to Dominate SEO Rankings plugin for WordPress is vulnerable to unauthorized loss of dat
The Read More & Accordion plugin for WordPress is vulnerable to unauthorized modification and loss of data due to a miss
The Media Library Folders plugin for WordPress is vulnerable to unauthorized plugin settings change due to a missing cap
The Team – Team Members Showcase Plugin plugin for WordPress is vulnerable to unauthorized access due to a missing capab
A vulnerability classified as problematic was found in Pix Software Vivaz 6.0.10. This vulnerability affects unknown cod
Missing Authorization vulnerability in Adnan Analytify wp-analytify allows Exploiting Incorrectly Configured Access Cont
The Team Builder – Meet the Team plugin for WordPress is vulnerable to unauthorized modification of data due to a missin
The FormCraft plugin for WordPress is vulnerable to unauthorized access of data due to a missing capability check in for
A vulnerability, which was classified as problematic, was found in OFCMS 1.1.3. Affected is an unknown function. The man
A vulnerability was found in Benner ModernaNet up to 1.1.0. It has been rated as problematic. This issue affects some un
A vulnerability classified as problematic has been found in Benner ModernaNet up to 1.2.0. Affected is an unknown functi
Missing Authorization vulnerability in WPDeveloper Essential Blocks for Gutenberg essential-blocks allows Exploiting Inc
Missing Authorization vulnerability in Xfinitysoft Order Limit for WooCommerce wc-order-limit-lite allows Exploiting Inc
Missing Authorization vulnerability in NotFound Pie Register Premium. This issue affects Pie Register Premium: from n/a
Missing Authorization vulnerability in WPZOOM Recipe Card Blocks for Gutenberg & Elementor recipe-card-blocks-by-wpzoom
A Broken Authorization schema exists where any authenticated user could download IOA script and configuration files if t
A vulnerability has been found in LinZhaoguan pb-cms 2.0 and classified as problematic. This vulnerability affects unkno
The Forex Calculators plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capabilit
The NextMove Lite – Thank You Page for WooCommerce plugin for WordPress is vulnerable to unauthorized submission of data
The BuddyPress WooCommerce My Account Integration. Create WooCommerce Member Pages plugin for WordPress is vulnerable to
The BuddyPress WooCommerce My Account Integration. Create WooCommerce Member Pages plugin for WordPress is vulnerable to
A vulnerability classified as problematic was found in zj1983 zz up to 2024-08. Affected by this vulnerability is an unk
A vulnerability was found in shishuocms 1.1 and classified as problematic. This issue affects some unknown processing. T
The VW Storefront theme for WordPress is vulnerable to unauthorized modification of data due to a missing capability che
The WooMail - WooCommerce Email Customizer plugin for WordPress is vulnerable to unauthorized loss of data due to a miss
The Zass - WooCommerce Theme for Handmade Artists and Artisans theme for WordPress is vulnerable to unauthorized access
The Lafka - Multi Store Burger - Pizza & Food Delivery WooCommerce Theme theme for WordPress is vulnerable to unauthoriz
The Cookie banner plugin for WordPress – Cookiebot CMP by Usercentrics plugin for WordPress is vulnerable to unauthorize
A vulnerability has been found in huang-yk student-manage 1.0 and classified as problematic. This vulnerability affects
The EventPrime – Events Calendar, Bookings and Tickets plugin for WordPress is vulnerable to unauthorized access of data
Frequently Asked Questions
What is CWE-862?
CWE-862 (Missing Authorization) is a weakness category in the Common Weakness Enumeration (CWE) system maintained by MITRE. It describes a class of software or hardware vulnerability that can lead to security issues.
How many CVEs are classified as CWE-862?
There are 10,347 CVE records associated with CWE-862 in our database. Of these, 472 are critical severity, 2109 are high severity, and 6422 are medium severity.
How can I protect against CWE-862 vulnerabilities?
Protection strategies depend on the specific weakness type. General measures include input validation, secure coding practices, regular security testing, and keeping software up to date. CyberStrike can help by automatically scanning your infrastructure for vulnerabilities related to CWE-862 using AI-powered security agents.
Detect CWE-862 Vulnerabilities
CyberStrike's AI agents automatically detect missing authorization vulnerabilities across your infrastructure.
Get Started