Vulnerability index

Browse CVEs

6,896 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Missing AuthorizationCWE-862 × clear
HIGH 7.5 CVE-2026-48835 Unauthenticated Broken Access Control in Contact Form by WPForms <= 1.10.0.4 versions. Mitigation only Fix from $1,9502026-06-15 HIGH 8.2 CVE-2026-42664 Unauthenticated Broken Access Control in AI Product Search for WooCommerce &#8211; Motive Commerce Search <= 1.38.2 versions. Mitigation only Fix from $1,9502026-06-15 HIGH 7.5 CVE-2026-42666 Unauthenticated Broken Access Control in Salon booking system <= 10.30.25 versions. Mitigation only Fix from $1,9502026-06-15 MEDIUM 6.5 CVE-2026-42659 Subscriber Broken Access Control in Advanced Form Integration <= 1.126.12 versions. Mitigation only Fix from $1,6002026-06-15 MEDIUM 6.5 CVE-2026-42640 Unauthenticated Broken Access Control in Classified Listing <= 5.3.8 versions. Mitigation only Fix from $1,6002026-06-15 MEDIUM 6.3 CVE-2026-42651 Subscriber Broken Access Control in Classified Listing <= 5.3.9 versions. Mitigation only Fix from $1,6002026-06-15 HIGH 7.1 CVE-2026-40788 Subscriber Broken Access Control in ChatBot <= 7.9.7 versions. Mitigation only Fix from $1,9502026-06-15 MEDIUM 6.5 CVE-2026-40793 Subscriber Broken Access Control in Groundhogg < 4.4.1 versions. Mitigation only Fix from $1,6002026-06-15 MEDIUM 6.5 CVE-2026-40794 Subscriber Broken Access Control in myCred <= 3.0.3 versions. Mitigation only Fix from $1,6002026-06-15 MEDIUM 6.5 CVE-2026-40795 Subscriber Broken Access Control in Amelia <= 2.2 versions. No fix yet Fix from $1,6002026-06-15 HIGH 7.5 CVE-2026-40774 Unauthenticated Broken Access Control in Booking Package <= 1.7.06 versions. Mitigation only Fix from $1,9502026-06-15 HIGH 7.3 CVE-2026-40775 Unauthenticated Broken Access Control in Royal MCP <= 1.4.2 versions. Mitigation only Fix from $1,9502026-06-15 HIGH 7.5 CVE-2026-40776 Unauthenticated Broken Access Control in WP Event SOlution <= 4.1.8 versions. Mitigation only Fix from $1,9502026-06-15 MEDIUM 6.5 CVE-2026-40782 Unauthenticated Broken Access Control in WPAdverts <= 2.3.0 versions. Mitigation only Fix from $1,6002026-06-15 MEDIUM 6.5 CVE-2026-40743 Unauthenticated Broken Access Control in Tutor LMS <= 3.9.7 versions. Mitigation only Fix from $1,6002026-06-15 MEDIUM 6.5 CVE-2026-40773 Subscriber Broken Access Control in rtMedia for WordPress, BuddyPress and bbPress <= 4.7.9 versions. Mitigation only Fix from $1,6002026-06-15 MEDIUM 6.4 CVE-2026-39594 Subscriber Broken Access Control in Ultra Addons for WPForms <= 1.0.11 versions. Mitigation only Fix from $1,6002026-06-15 HIGH 7.5 CVE-2026-40741 Unauthenticated Broken Access Control in Redsys for WooCommerce Light <= 7.0.0 versions. Mitigation only Fix from $1,9502026-06-15 HIGH 7.5 CVE-2026-39533 Unauthenticated Broken Access Control in AWP Classifieds <= 4.4.4 versions. Mitigation only Fix from $1,9502026-06-15 HIGH 7.5 CVE-2026-39534 Unauthenticated Broken Access Control in WP Directory Kit <= 1.5.0 versions. Mitigation only Fix from $1,9502026-06-15 MEDIUM 6.5 CVE-2026-39584 Subscriber Broken Access Control in RepairBuddy <= 4.1132 versions. Mitigation only Fix from $1,6002026-06-15 MEDIUM 6.5 CVE-2026-39515 Subscriber Broken Access Control in Motors < 1.4.107 versions. Mitigation only Fix from $1,6002026-06-15 HIGH 7.5 CVE-2026-39524 Unauthenticated Broken Access Control in Masteriyo - LMS <= 2.1.5 versions. Mitigation only Fix from $1,9502026-06-15 MEDIUM 6.5 CVE-2026-39525 Unauthenticated Broken Access Control in Booking Activities <= 1.16.48.1 versions. Mitigation only Fix from $1,6002026-06-15 HIGH 7.5 CVE-2026-39503 Unauthenticated Broken Access Control in Easy Digital Downloads <= 3.6.5 versions. Mitigation only Fix from $1,9502026-06-15 HIGH 7.5 CVE-2026-39513 Unauthenticated Broken Access Control in Easy Appointments <= 3.12.21 versions. Mitigation only Fix from $1,9502026-06-15 HIGH 7.5 CVE-2026-34886 Unauthenticated Broken Access Control in Simple Membership <= 4.7.1 versions. Mitigation only Fix from $1,9502026-06-15 MEDIUM 6.5 CVE-2026-34892 Subscriber Broken Access Control in Rank Math SEO <= 1.0.271 versions. Mitigation only Fix from $1,6002026-06-15 HIGH 7.5 CVE-2026-34898 Unauthenticated Broken Access Control in Event Tickets Manager for WooCommerce <= 1.5.3 versions. Mitigation only Fix from $1,9502026-06-15 HIGH 7.5 CVE-2026-25425 Unauthenticated Broken Access Control in User Registration <= 5.1.2 versions. Mitigation only Fix from $1,9502026-06-15