CWE-862
8,720 CVEs • Abstraction: Class • Likelihood of Exploit: High
Missing Authorization
The product does not perform an authorization check when an actor attempts to access a resource or perform an action.
CVEs (8,720)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
1Ibexa 5Digital Experience Platform Ez Platform KernelEzplatform Http Cache Fastly+2 moreJun 17, 2026 Mar 12, 2023 N/A· v4 9.8 CRITICAL· v3 N/A· v2 An issue was discovered in eZ Publish Ibexa Kernel before 7.5.28. Access control based on object state is mishandled. |
In telephony service, there is a missing permission check. This could lead to local denial of service in telephone service with no additional execution privileges needed. |
In telephony service, there is a missing permission check. This could lead to local denial of service in telephone service with no additional execution privileges needed. |
In telephony service, there is a missing permission check. This could lead to local denial of service in telephone service with no additional execution privileges needed. |
In telephony service, there is a missing permission check. This could lead to local denial of service in telephone service with no additional execution privileges needed. |
In telephony service, there is a missing permission check. This could lead to local denial of service in telephone service with no additional execution privileges needed. |
In telephony service, there is a missing permission check. This could lead to local information disclosure with no additional execution privileges needed. |
In telephony service, there is a missing permission check. This could lead to local information disclosure with no additional execution privileges needed. |
In telephony service, there is a missing permission check. This could lead to local information disclosure with no additional execution privileges needed. |
In telephony service, there is a missing permission check. This could lead to local information disclosure with no additional execution privileges needed. |
In telephony service, there is a missing permission check. This could lead to local information disclosure with no additional execution privileges needed. |
In telephony service, there is a missing permission check. This could lead to local information disclosure with no additional execution privileges needed. |
In telephony service, there is a missing permission check. This could lead to local information disclosure with no additional execution privileges needed. |
In telephony service, there is a missing permission check. This could lead to local information disclosure with no additional execution privileges needed. |
In telephony service, there is a missing permission check. This could lead to local information disclosure with no additional execution privileges needed. |
In telephone service, there is a missing permission check. This could lead to local escalation of privilege with system execution privileges needed. |
In telephone service, there is a missing permission check. This could lead to local escalation of privilege with system execution privileges needed. |
1Rapidload 2Power Up For Autoptimize Rapidload Power Up For AutoptimizeJun 17, 2026 Mar 10, 2023 N/A· v4 4.3 MEDIUM· v3 N/A· v2 The RapidLoad Power-Up for Autoptimize plugin for WordPress is vulnerable to unauthorized settings update due to a missing capability check on the uucss_update_rule function in versions up to, and including, 1.7.1. This...Show more |
1Rapidload 2Power Up For Autoptimize Rapidload Power Up For AutoptimizeJun 17, 2026 Mar 10, 2023 N/A· v4 4.3 MEDIUM· v3 N/A· v2 The RapidLoad Power-Up for Autoptimize plugin for WordPress is vulnerable to unauthorized cache modification due to a missing capability check on the attach_rule function in versions up to, and including, 1.7.1. This mak...Show more |
1Rapidload 2Power Up For Autoptimize Rapidload Power Up For AutoptimizeJun 17, 2026 Mar 10, 2023 N/A· v4 4.3 MEDIUM· v3 N/A· v2 The RapidLoad Power-Up for Autoptimize plugin for WordPress is vulnerable to unauthorized data loss due to a missing capability check on the clear_uucss_logs function in versions up to, and including, 1.7.1. This makes i...Show more |