Vulnerabilities > Missing Authorization

DATE CVE VULNERABILITY TITLE RISK
2024-12-14 CVE-2024-11712 Missing Authorization vulnerability in Wpjobportal WP JOB Portal
The WP Job Portal – A Complete Recruitment System for Company or Job Board website plugin for WordPress is vulnerable to unauthorized access of data due to a missing capability check on the getResumeFileDownloadById() function in all versions up to, and including, 2.2.2.
network
low complexity
wpjobportal CWE-862
5.3
2024-12-14 CVE-2024-11715 Missing Authorization vulnerability in Wpjobportal WP JOB Portal
The WP Job Portal – A Complete Recruitment System for Company or Job Board website plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on the assignUserRole() function in all versions up to, and including, 2.2.2.
network
low complexity
wpjobportal CWE-862
critical
9.8
2024-12-13 CVE-2022-45806 Missing Authorization vulnerability in Strategy11 Formidable Forms
Missing Authorization vulnerability in Strategy11 Form Builder Team Formidable Forms allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Formidable Forms: from n/a through 5.5.4.
network
low complexity
strategy11 CWE-862
critical
9.8
2024-12-13 CVE-2022-45819 Missing Authorization vulnerability in Code-Atlantic Popup Maker
Missing Authorization vulnerability in Popup Maker Popup Maker allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Popup Maker: from n/a through 1.17.1.
network
low complexity
code-atlantic CWE-862
3.5
2024-12-13 CVE-2022-45826 Missing Authorization vulnerability in Sunshinephotocart Sunshine Photo Cart
Missing Authorization vulnerability in WP Sunshine Sunshine Photo Cart allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Sunshine Photo Cart: from n/a through 2.9.13.
network
low complexity
sunshinephotocart CWE-862
5.4
2024-12-13 CVE-2022-47594 Missing Authorization vulnerability in Wpdeveloper Essential Blocks
Missing Authorization vulnerability in WPDeveloper Essential Blocks for Gutenberg allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Essential Blocks for Gutenberg: from n/a through 3.8.5.
network
low complexity
wpdeveloper CWE-862
6.5
2024-12-13 CVE-2023-22697 Missing Authorization vulnerability in Ays-Pro Survey Maker
Missing Authorization vulnerability in Survey Maker team Survey Maker allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Survey Maker: from n/a through 3.2.0.
network
low complexity
ays-pro CWE-862
critical
9.8
2024-12-13 CVE-2023-33995 Missing Authorization vulnerability in 10Web Photo Gallery
Missing Authorization vulnerability in Photo Gallery Team Photo Gallery by 10Web allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Photo Gallery by 10Web: from n/a through 1.8.15.
network
low complexity
10web CWE-862
4.3
2024-12-13 CVE-2023-35051 Missing Authorization vulnerability in Cimatti Wordpress Contact Forms
Missing Authorization vulnerability in Cimatti Consulting Contact Forms by Cimatti allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Contact Forms by Cimatti: from n/a through 1.5.7.
network
low complexity
cimatti CWE-862
8.8
2024-12-13 CVE-2023-36681 Missing Authorization vulnerability in Coolplugins Cryptocurrency Widgets
Missing Authorization vulnerability in Cool Plugins Cryptocurrency Widgets – Price Ticker & Coins List allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Cryptocurrency Widgets – Price Ticker & Coins List: from n/a through 2.6.2.
network
low complexity
coolplugins CWE-862
critical
9.8