Filtered by CWE-862
Total 7706 CVE
CVE Vendors Products Updated CVSS v3.1
CVE-2025-58192 3 Wordpress, Xylus Themes, Xylusthemes 3 Wordpress, Wp Bulk Delete, Wp Bulk Delete 2026-04-01 5.4 Medium
Missing Authorization vulnerability in Xylus Themes WP Bulk Delete wp-bulk-delete allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects WP Bulk Delete: from n/a through <= 1.3.6.
CVE-2025-48334 1 Binarycarpenter 1 Woo Slider Pro 2026-04-01 4.3 Medium
Missing Authorization vulnerability in BinaryCarpenter Woo Slider Pro woo-slider-pro-drag-drop-slider-builder-for-woocommerce allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Woo Slider Pro: from n/a through <= 1.12.
CVE-2025-48272 1 Wpjobportal 1 Wp Job Portal 2026-04-01 N/A
Missing Authorization vulnerability in wpjobportal WP Job Portal wp-job-portal allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects WP Job Portal: from n/a through <= 2.3.2.
CVE-2025-48138 1 Bertha 1 Bertha Ai 2026-04-01 8.8 High
Missing Authorization vulnerability in Bertha AI &#8211; Andrew Palmer BERTHA AI bertha-ai-free allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects BERTHA AI: from n/a through <= 1.13.
CVE-2025-48133 1 Uncannyowl 1 Uncanny Automator 2026-04-01 9.8 Critical
Missing Authorization vulnerability in Uncanny Owl Uncanny Automator uncanny-automator allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Uncanny Automator: from n/a through <= 6.4.0.2.
CVE-2025-47688 1 Advancedfilemanager 1 Advanced File Manager 2026-04-01 9.8 Critical
Missing Authorization vulnerability in Saad Iqbal Advanced File Manager file-manager-advanced allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Advanced File Manager: from n/a through <= 5.3.1.
CVE-2025-47628 1 Quomodosoft 1 Qs Dark Mode 2026-04-01 8.8 High
Missing Authorization vulnerability in quomodosoft QS Dark Mode qs-dark-mode allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects QS Dark Mode: from n/a through <= 3.0.
CVE-2025-47612 1 Flowdee 1 Clickwhale 2026-04-01 8.8 High
Missing Authorization vulnerability in ClickWhale ClickWhale clickwhale allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects ClickWhale: from n/a through <= 2.4.6.
CVE-2025-47580 1 Etoilewebdesign 1 Front End Users 2026-04-01 9.8 Critical
Missing Authorization vulnerability in Rustaurius Front End Users front-end-only-users allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Front End Users: from n/a through <= 3.2.35.
CVE-2025-46247 1 Codepeople 1 Appointment Booking Calendar 2026-04-01 9.8 Critical
Missing Authorization vulnerability in codepeople Appointment Booking Calendar appointment-booking-calendar allows Accessing Functionality Not Properly Constrained by ACLs.This issue affects Appointment Booking Calendar: from n/a through <= 1.3.92.
CVE-2025-46244 1 Multidots 1 Advanced Linked Variations For Woocommerce 2026-04-01 9.8 Critical
Missing Authorization vulnerability in Dotstore Advanced Linked Variations for Woocommerce linked-variation allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Advanced Linked Variations for Woocommerce: from n/a through <= 1.0.3.
CVE-2025-46232 1 Alttext 1 Alt Text Ai 2026-04-01 8.8 High
Missing Authorization vulnerability in alttextai Download Alt Text AI alttext-ai allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Download Alt Text AI: from n/a through <= 1.9.93.
CVE-2025-3702 2 Melapress, Wordpress 2 Melapress File Monitor, Wordpress 2026-04-01 N/A
Missing Authorization vulnerability in Melapress Melapress File Monitor website-file-changes-monitor allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Melapress File Monitor: from n/a through < 2.2.0.
CVE-2025-39493 1 Valvepress 1 Rankie 2026-04-01 8.8 High
Missing Authorization vulnerability in ValvePress Rankie valvepress-rankie allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Rankie: from n/a through < 1.8.2.
CVE-2025-39482 1 Imithemes 1 Eventer 2026-04-01 8.8 High
Missing Authorization vulnerability in imithemes Eventer eventer allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Eventer: from n/a through < 3.11.4.
CVE-2025-39413 1 Wpgoplugins 1 Simple Sitemap 2026-04-01 8.8 High
Missing Authorization vulnerability in David Gwyer Simple Sitemap – Create a Responsive HTML Sitemap simple-sitemap.This issue affects Simple Sitemap – Create a Responsive HTML Sitemap: from n/a through <= 3.6.0.
CVE-2025-39412 1 Averta 1 Master Slider 2026-04-01 4.3 Medium
Missing Authorization vulnerability in averta Master Slider master-slider.This issue affects Master Slider: from n/a through <= 3.11.0.
CVE-2025-39353 1 Themegoods 1 Grand Restaurant 2026-04-01 N/A
Missing Authorization vulnerability in ThemeGoods Grand Restaurant grandrestaurant allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Grand Restaurant: from n/a through <= 7.0.
CVE-2025-39352 1 Themegoods 1 Grand Restaurant 2026-04-01 N/A
Missing Authorization vulnerability in ThemeGoods Grand Restaurant grandrestaurant allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Grand Restaurant: from n/a through <= 7.0.
CVE-2025-32254 1 Iqonic 1 Wpbookit 2026-04-01 5.3 Medium
Missing Authorization vulnerability in Iqonic Design WPBookit wpbookit allows Accessing Functionality Not Properly Constrained by ACLs.This issue affects WPBookit: from n/a through <= 1.0.7.