Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CWE-862 (授权机制缺失) — Vulnerability Class 5531

5531 vulnerabilities classified as CWE-862 (授权机制缺失). AI Chinese analysis included.

CVE IDTitleCVSSSeverityPublished
CVE-2024-54020 Fortinet FortiManager 安全漏洞 — FortiManager 2.1 Low2025-05-28
CVE-2025-5117 Property 1.0.5 - 1.0.6 - Missing Authorization to Authenticated (Author+) Privilege Escalation via property_package_user_role Metadata in PayPal Registration — Property – Real Estate Directory Listing 8.8 High2025-05-27
CVE-2025-4683 MStore API – Create Native Android & iOS Apps On The Cloud <= 4.17.5 - Missing Authorization to Authenticated (Subscriber+) Posts Creation — MStore API – Create Native Android & iOS Apps On The Cloud 4.3 Medium2025-05-27
CVE-2025-40667 Missing authorization vulnerability in TCMAN GIM v11 — GIM 8.8AIHighAI2025-05-26
CVE-2025-39536 WordPress JobHunt Job Alerts <= 3.6 - Arbitrary Content Deletion Vulnerability — JobHunt Job Alerts 8.2 High2025-05-23
CVE-2025-46488 WordPress Visual Builder plugin <= 1.2.2 - Broken Access Control vulnerability — Visual Builder 7.1 High2025-05-23
CVE-2025-47529 WordPress Experto CTA Widget – Call To Action, Sticky CTA, Floating Button Plugin <= 1.1.1 - Settings Change Vulnerability — Experto CTA Widget – Call To Action, Sticky CTA, Floating Button Plugin 6.5 Medium2025-05-23
CVE-2025-47558 WordPress MapSVG plugin < 8.6.13 - Broken Access Control vulnerability — MapSVG 7.5 High2025-05-23
CVE-2025-47619 WordPress 6Storage Rentals plugin <= 2.20.2 - Broken Access Control vulnerability — 6Storage Rentals 6.5 Medium2025-05-23
CVE-2025-47690 WordPress Lead Form Data Collection to CRM plugin <= 3.1 - Arbitrary Option Update to Privilege Escalation vulnerability — Lead Form Data Collection to CRM 8.8 High2025-05-23
CVE-2025-48271 WordPress Leadinfo plugin <= 1.1 - Settings Change Vulnerability — Leadinfo 6.5 Medium2025-05-23
CVE-2025-48275 WordPress Visual Header plugin <= 1.3 - Broken Access Control Vulnerability — Visual Header 6.5 Medium2025-05-23
CVE-2025-2506 pglogical 安全漏洞 — pglogical 5.3 Medium2025-05-22
CVE-2025-47942 Learners on edX Platform can download python_lib.zip — edx-platform 5.3 Medium2025-05-21
CVE-2025-48009 Single Content Sync - Moderately critical - Access bypass - SA-CONTRIB-2025-060 — Single Content Sync 9.8AICriticalAI2025-05-21
CVE-2025-4105 Splitit <= 4.2.8 - Missing Authorization to Multiple Administrative Actions — Splitit 5.4 Medium2025-05-21
CVE-2025-39350 WordPress wProject theme < 5.8.0 - Unauthenticated Post/Comment/Attachment Modification/Deletion vulnerability — wProject 8.2 High2025-05-19
CVE-2025-39352 WordPress Grand Restaurant WordPress theme <= 7.0 - Arbitrary Options Deletion vulnerability — Grand Restaurant 8.2 High2025-05-19
CVE-2025-39447 WordPress JetElements For Elementor plugin <= 2.7.4.1 - Broken Access Control Vulnerability — JetElements For Elementor 7.5 High2025-05-19
CVE-2025-39449 WordPress JetWooBuilder plugin <= 2.1.18 - Broken Access Control Vulnerability — JetWooBuilder 7.5 High2025-05-19
CVE-2025-39451 WordPress JetBlocks For Elementor plugin <= 1.3.16 - Broken Access Control Vulnerability — JetBlocks For Elementor 7.5 High2025-05-19
CVE-2025-43838 WordPress Custom PC Builder Lite for WooCommerce <= 1.0.1 - Settings Change Vulnerability — Custom PC Builder Lite for WooCommerce 6.5 Medium2025-05-19
CVE-2025-22287 WordPress LTL Freight Quotes – FreightQuote Edition plugin <= 2.3.11 - Broken Access Control vulnerability — LTL Freight Quotes – FreightQuote Edition 5.4 Medium2025-05-19
CVE-2025-39454 WordPress Name Directory plugin <= 1.30.0 - Broken Access Control vulnerability — Name Directory 4.3 Medium2025-05-19
CVE-2025-39460 WordPress Eduma theme <= 5.6.4 - Broken Access Control vulnerability — Eduma 5.3 Medium2025-05-19
CVE-2025-39412 WordPress Master Slider plugin <= 3.11.0 - Broken Access Control vulnerability — Master Slider 4.3 Medium2025-05-19
CVE-2025-39398 WordPress Hotel + Bed and Breakfast Booking Calendar Theme | Bellevue theme <= 4.2.2 - Broken Access Control vulnerability — Bellevue 4.3 Medium2025-05-19
CVE-2025-26920 WordPress Customify theme <= 0.4.8 - Broken Access Control vulnerability — Customify 5.4 Medium2025-05-19
CVE-2025-26867 WordPress Bulk theme <= 1.0.11 - Broken Access Control vulnerability — Bulk 5.3 Medium2025-05-19
CVE-2025-39388 WordPress AnalyticsWP plugin <= 2.0.0 - Broken Access Control vulnerability — AnalyticsWP 5.3 Medium2025-05-19

Vulnerabilities classified as CWE-862 (授权机制缺失) represent 5531 CVEs. The CWE taxonomy describes the weakness; review individual CVEs for product-specific impact.