Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CWE-862 (授权机制缺失) — Vulnerability Class 5524

5524 vulnerabilities classified as CWE-862 (授权机制缺失). AI Chinese analysis included.

CVE IDTitleCVSSSeverityPublished
CVE-2026-25469 WordPress ViaBill – WooCommerce plugin <= 1.1.53 - Settings Change vulnerability — ViaBill &#8211; WooCommerce 6.5 Medium2026-03-25
CVE-2026-25456 WordPress Automated FedEx live/manual rates with shipping labels plugin <= 5.1.9 - Broken Access Control vulnerability — Automated FedEx live/manual rates with shipping labels 7.3 High2026-03-25
CVE-2026-25460 WordPress Ave Core plugin <= 2.9.1 - Broken Access Control vulnerability — Ave Core 6.3 Medium2026-03-25
CVE-2026-25462 WordPress avalex plugin <= 3.1.3 - Broken Access Control vulnerability — avalex 6.5 Medium2026-03-25
CVE-2026-25455 WordPress Product Slider for WooCommerce plugin <= 1.13.61 - Broken Access Control vulnerability — Product Slider for WooCommerce 6.5 Medium2026-03-25
CVE-2026-25454 WordPress The League theme <= 4.4.1 - Broken Access Control vulnerability — The League 6.5 Medium2026-03-25
CVE-2026-25437 WordPress GZSEO plugin <= 2.0.14 - Broken Access Control vulnerability — GZSEO 6.5 Medium2026-03-25
CVE-2026-25430 WordPress Integration for Mailchimp and Contact Form 7, WPForms, Elementor, Ninja Forms plugin <= 1.2.2 - Broken Access Control vulnerability — Integration for Mailchimp and Contact Form 7, WPForms, Elementor, Ninja Forms 6.5 Medium2026-03-25
CVE-2026-25398 WordPress Vertex Addons for Elementor plugin <= 1.6.4 - Broken Access Control vulnerability — Vertex Addons for Elementor 6.5 Medium2026-03-25
CVE-2026-25390 WordPress New User Approve plugin <= 3.2.3 - Broken Access Control vulnerability — New User Approve 6.5 Medium2026-03-25
CVE-2026-25401 WordPress WPCargo Track & Trace plugin <= 8.0.2 - Broken Access Control vulnerability — WPCargo Track & Trace 7.5 High2026-03-25
CVE-2026-25396 WordPress Commerce Coinbase For WooCommerce plugin <= 1.6.6 - Broken Access Control vulnerability — Commerce Coinbase For WooCommerce 9.1 -2026-03-25
CVE-2026-25365 WordPress Kargo Takip plugin < 0.2.4 - Broken Access Control vulnerability — Kargo Takip 6.5 Medium2026-03-25
CVE-2026-25317 WordPress Print Invoice & Delivery Notes for WooCommerce plugin <= 5.9.0 - Broken Access Control vulnerability — Print Invoice & Delivery Notes for WooCommerce 8.1 -2026-03-25
CVE-2026-25309 WordPress PublishPress Authors plugin <= 4.10.1 - Broken Access Control vulnerability — PublishPress Authors 7.5 High2026-03-25
CVE-2026-25327 WordPress Five Star Restaurant Reservations plugin <= 2.7.9 - Broken Access Control vulnerability — Five Star Restaurant Reservations 8.1 -2026-03-25
CVE-2026-25034 WordPress KiviCare plugin <= 3.6.16 - Broken Access Control vulnerability — KiviCare 6.5 Medium2026-03-25
CVE-2026-25026 WordPress Team plugin <= 5.0.11 - Broken Access Control vulnerability — Team 8.1 -2026-03-25
CVE-2026-25009 WordPress Education Zone theme <= 1.3.8 - Broken Access Control vulnerability — Education Zone 6.5 Medium2026-03-25
CVE-2026-24987 WordPress WP System Log plugin <= 1.2.7 - Broken Access Control vulnerability — WP System Log 6.5 Medium2026-03-25
CVE-2026-24972 WordPress Elated Listing plugin <= 1.4 - Broken Access Control vulnerability — Elated Listing 6.5 Medium2026-03-25
CVE-2026-24382 WordPress News Magazine X theme <= 1.2.50 - Broken Access Control vulnerability — News Magazine X 7.5 High2026-03-25
CVE-2026-24369 WordPress The Grid plugin < 2.8.0 - Broken Access Control vulnerability — The Grid 7.1 High2026-03-25
CVE-2026-24376 WordPress WPVulnerability plugin <= 4.2.1 - Broken Access Control vulnerability — WPVulnerability 6.5 Medium2026-03-25
CVE-2026-24364 WordPress WP User Frontend plugin <= 4.2.5 - Broken Access Control vulnerability — WP User Frontend 6.5 Medium2026-03-25
CVE-2026-23977 WordPress Helpdesk Support Ticket System for WooCommerce plugin <= 2.1.2 - Broken Access Control vulnerability — Helpdesk Support Ticket System for WooCommerce 7.5 High2026-03-25
CVE-2026-24362 WordPress Ultimate Post Kit plugin <= 4.0.21 - Broken Access Control vulnerability — Ultimate Post Kit 6.4 Medium2026-03-25
CVE-2026-24363 WordPress WP Cost Estimation & Payment Forms Builder plugin < 10.3.0 - Broken Access Control vulnerability — WP Cost Estimation & Payment Forms Builder 7.5 High2026-03-25
CVE-2026-23972 WordPress Booking and Rental Manager plugin <= 2.6.0 - Broken Access Control vulnerability — Booking and Rental Manager 6.5 Medium2026-03-25
CVE-2026-23806 WordPress Jobs for WordPress plugin <= 2.8 - Broken Access Control vulnerability — Jobs for WordPress 7.5 High2026-03-25

Vulnerabilities classified as CWE-862 (授权机制缺失) represent 5524 CVEs. The CWE taxonomy describes the weakness; review individual CVEs for product-specific impact.