VulnSea

CWE-862

CVEs classified under CWE-862, newest first.

1331 CVEsRSS

CVE-2026-12853Medium· 5.4
2w ago

The Flamingo plugin for WordPress is vulnerable to authorization bypass in all versions up to, and including, 2.6.2

The Flamingo plugin for WordPress is vulnerable to authorization bypass in all versions up to, and including, 2.6.2. This is due to the plugin not properly verifying that a user is authorized to perform an action. This makes it possible …

▾ Sunlitrocklobsterinc · FlamingoEPSS 0.31%via NVD
CVE-2026-86499Medium· 4.3
2w ago

In JetBrains YouTrack before 2026.1.14047 predefined search fields leaked all group names to any user, regardless of visibility permission

In JetBrains YouTrack before 2026.1.14047 predefined search fields leaked all group names to any user, regardless of visibility permission

▾ SunlitJetBrains · YouTrackEPSS 0.27%via NVD
CVE-2026-86496Medium· 4.3
2w ago

In JetBrains YouTrack before 2026.2.18769 missing access control on Helpdesk authorized reporters exposed reporter email addresses

In JetBrains YouTrack before 2026.2.18769 missing access control on Helpdesk authorized reporters exposed reporter email addresses

▾ SunlitJetBrains · YouTrackEPSS 0.28%via NVD
CVE-2026-86438High· 7.2
2w ago

Lara Dashboard before 1.3.2 fails to authorize the MarketplaceModuleBrowser installModule Livewire action, allowing non-Superadmin administrators to install modules

Lara Dashboard before 1.3.2 fails to authorize the MarketplaceModuleBrowser installModule Livewire action, allowing non-Superadmin administrators to install modules. Attackers can download and auto-activate arbitrary PHP modules from the…

▾ Twilightlaradashboard · laradashboardEPSS 1.1%via NVD
CVE-2026-86436Medium· 5.4PoC
2w ago

Lara Dashboard before 1.3.2 fails to authorize access to the post-builder image and video upload endpoints, allowing authenticated accounts without content permissions to upload files

Lara Dashboard before 1.3.2 fails to authorize access to the post-builder image and video upload endpoints, allowing authenticated accounts without content permissions to upload files. Attackers can upload polyglot files with attacker-ch…

▾ Twilightlaradashboard · laradashboardEPSS 0.53%via NVD
CVE-2026-86495Medium· 6.5
2w ago

In JetBrains YouTrack before 2026.2.18687 missing permission checks allowed creating knowledge base articles in inaccessible projects

In JetBrains YouTrack before 2026.2.18687 missing permission checks allowed creating knowledge base articles in inaccessible projects

▾ SunlitJetBrains · YouTrackEPSS 0.33%via NVD
CVE-2026-86494High· 7.7
2w ago

In JetBrains YouTrack before 2026.2.18634 cloning a whiteboard allowed unauthorized changes to links on inaccessible issues

In JetBrains YouTrack before 2026.2.18634 cloning a whiteboard allowed unauthorized changes to links on inaccessible issues

▾ TwilightJetBrains · YouTrackEPSS 0.30%via NVD
CVE-2026-86479High· 8.1
2w ago

In JetBrains YouTrack before 2026.2.18788, 2026.1.14055, 2025.3.161254 missing authorisation allowed access to restricted REST API resources via IDOR

In JetBrains YouTrack before 2026.2.18788, 2026.1.14055, 2025.3.161254 missing authorisation allowed access to restricted REST API resources via IDOR

▾ TwilightJetBrains · YouTrackEPSS 0.35%via NVD
CVE-2026-86307Medium· 4.3PoC
2w ago

A security vulnerability has been detected in light0011 cms c774dce31c6df0055568a8d5c53d964d99be199d/f72cf46f601efb2a0618c3814cc2f61380b38930

A security vulnerability has been detected in light0011 cms c774dce31c6df0055568a8d5c53d964d99be199d/f72cf46f601efb2a0618c3814cc2f61380b38930. This vulnerability affects unknown code. The manipulation leads to cross-site request forgery.…

▾ Twilightlight0011 · cmsEPSS 0.23%via NVD
CVE-2026-86451Medium· 4.3
2w ago

Affected versions of MISP allow authenticated users to retrieve object-reference records by UUID through EventGraphTool::get_reference_data() without first checking whether the requester is authorized to view the object the reference bel…

Affected versions of MISP allow authenticated users to retrieve object-reference records by UUID through EventGraphTool::get_reference_data() without first checking whether the requester is authorized to view the object the reference bel…

▾ Sunlitmisp-project · mispEPSS 0.27%via NVD
CVE-2026-86441Medium· 4.3⚖ disputed
2w ago

Affected versions of MISP contain inconsistent authorization checks across dashboard widgets that display organisation information. Several organisation-related widgets did not honor Security.hide_organisation_index_from_users

Affected versions of MISP contain inconsistent authorization checks across dashboard widgets that display organisation information. Several organisation-related widgets did not honor Security.hide_organisation_index_from_users. As a re…

▾ Sunlitmisp-project · mispEPSS 0.28%via NVD
CVE-2026-86418Medium· 4.3⚖ disputed
2w ago

Affected versions of MISP expose organisation metadata through the dashboard organisation picker without applying the same visibility restrictions enforced by the normal organisation index and per-organisation view. The affected endpoin…

Affected versions of MISP expose organisation metadata through the dashboard organisation picker without applying the same visibility restrictions enforced by the normal organisation index and per-organisation view. The affected endpoin…

▾ Sunlitmisp-project · mispEPSS 0.27%via NVD
CVE-2026-86417Medium· 4.3
2w ago

Affected versions of MISP inconsistently enforced email-address visibility in DashboardsController::listTemplates(). The query always fetched User.email, while redaction happened only inside the non-REST rendering branch

Affected versions of MISP inconsistently enforced email-address visibility in DashboardsController::listTemplates(). The query always fetched User.email, while redaction happened only inside the non-REST rendering branch. As a result, …

▾ Sunlitmisp-project · mispEPSS 0.27%via NVD
CVE-2026-86408Medium· 6.5
2w ago

Affected versions of MISP do not enforce parent-event visibility when serving cryptographic keys through CryptographicKeysController::view(). The vulnerable handler queried CryptographicKey directly using the supplied key ID and select…

Affected versions of MISP do not enforce parent-event visibility when serving cryptographic keys through CryptographicKeysController::view(). The vulnerable handler queried CryptographicKey directly using the supplied key ID and select…

▾ Sunlitmisp-project · mispEPSS 0.34%via NVD
CVE-2026-8279Medium· 5.3
2w ago

The Masteriyo LMS plugin for WordPress is vulnerable to unauthorized data deletion due to a missing capability check on the 'delete_item_permissions_check' function in the CourseProgressItemsController in all versions up to, and includin…

The Masteriyo LMS plugin for WordPress is vulnerable to unauthorized data deletion due to a missing capability check on the 'delete_item_permissions_check' function in the CourseProgressItemsController in all versions up to, and includin…

▾ Sunlitmasteriyo · Masteriyo LMS – LMS Course Builder, Quizzes & CertificatesEPSS 0.40%via NVD
CVE-2026-61410Critical· 9.4
2w ago

Dell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior to 5.36.00.00, contains a Missing Authorization vulnerability

Dell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior to 5.36.00.00, contains a Missing Authorization vulnerability. An unauthenticated attacker with remote access could potentially exploit this …

▾ Midnightdell · secure_connect_gatewayEPSS 0.85%via NVD
CVE-2026-86347Medium· 6.5
2w ago

Affected versions of MISP allow any authenticated user to access TemplatesController::uploadFile() because the ACL entry for templates/uploadFile used the wildcard *

Affected versions of MISP allow any authenticated user to access TemplatesController::uploadFile() because the ACL entry for templates/uploadFile used the wildcard *. This bypasses the intended role restrictions applied to neighboring te…

▾ Sunlitmisp-project · mispEPSS 0.43%via NVD
CVE-2026-86342Medium· 4.3
2w ago

Affected versions of MISP contain improper authorization checks in the freetext feed preview functionality

Affected versions of MISP contain improper authorization checks in the freetext feed preview functionality. The preview performed correlation lookups against attributes from events without applying the requesting user's ACL, allowing res…

▾ Sunlitmisp-project · mispEPSS 0.34%via NVD
CVE-2026-86281Medium· 4.3PoC
2w ago

A security flaw has been discovered in SourceCodester Syllabus-Aligned Learning Management & Examination System 1.0

A security flaw has been discovered in SourceCodester Syllabus-Aligned Learning Management & Examination System 1.0. This impacts an unknown function. Performing a manipulation results in cross-site request forgery. The attack can be ini…

▾ TwilightSourceCodester · Syllabus-Aligned Learning Management & Examination SystemEPSS 0.23%via NVD
CVE-2026-86271Medium· 4.7PoC
2w ago

A vulnerability was found in FluentCMS up to 0.0.5

A vulnerability was found in FluentCMS up to 0.0.5. This affects the function GetAccessible of the file src/Backend/FluentCMS.Services/Permissions/PermissionManager.cs. Performing a manipulation results in missing authorization. It is po…

▾ TwilightEPSS 0.40%via NVD
CVE-2026-86283High· 7.1PoC
3w ago

MISP's UiBeta theme collection view (app/View/Themed/UiBeta/Collections/view.ctp) performed a secondary query of member events by UUID without applying the caller's access control list (ACL)

MISP's UiBeta theme collection view (app/View/Themed/UiBeta/Collections/view.ctp) performed a secondary query of member events by UUID without applying the caller's access control list (ACL). The CollectionsController::view() action corr…

▾ MidnightMISP · MISPEPSS 0.37%via NVD
CVE-2026-86254Medium· 6.8PoC
3w ago

wger versions through master contain an incomplete authorization bypass in wger/core/views/user.py where three views retain the original gym-scope check using raw integer comparison instead of the is_same_gym() helper, allowing gym staff…

wger versions through master contain an incomplete authorization bypass in wger/core/views/user.py where three views retain the original gym-scope check using raw integer comparison instead of the is_same_gym() helper, allowing gym staff…

▾ Twilightwger-project · wgerEPSS 0.37%via NVD
CVE-2026-86182Medium· 4.3PoC
3w ago

A vulnerability was determined in diem-project diem up to 5.1.3

A vulnerability was determined in diem-project diem up to 5.1.3. This affects the function executeCommand of the file dmAdminPlugin/modules/dmConsole/actions/actions.class.php of the component dmConsole. This manipulation of the argument…

▾ Twilightdiem-project · diemEPSS 0.23%via NVD
CVE-2026-85038Medium· 5.3
3w ago

The B2BKing — Ultimate WooCommerce B2B and Wholesale Plugin — Wholesale Prices, Bulk Order Form & More WordPress plugin before 5.2.40 does not verify that a role selected during registration is one actually offered on the registration fo…

The B2BKing — Ultimate WooCommerce B2B and Wholesale Plugin — Wholesale Prices, Bulk Order Form & More WordPress plugin before 5.2.40 does not verify that a role selected during registration is one actually offered on the registration fo…

▾ SunlitEPSS 0.30%via NVD
CVE-2026-13159Medium· 4.3
3w ago

The Real Estate Papi WordPress theme through 1.0.5 does not perform capability or CSRF checks on one of its AJAX actions, allowing any authenticated user, such as a subscriber, to install a fixed set of companion from the WordPress.org …

The Real Estate Papi WordPress theme through 1.0.5 does not perform capability or CSRF checks on one of its AJAX actions, allowing any authenticated user, such as a subscriber, to install a fixed set of companion from the WordPress.org …

▾ SunlitEPSS 0.10%via NVD
CVE-2026-86194Medium· 6.9
3w ago

Grav Form Plugin before 9.1.22 fails to verify page authorization when resolving forms by name across pages, allowing anonymous visitors to execute form actions defined on login-restricted or unpublished pages

Grav Form Plugin before 9.1.22 fails to verify page authorization when resolving forms by name across pages, allowing anonymous visitors to execute form actions defined on login-restricted or unpublished pages. Attackers can POST to any …

▾ Sunlitgetgrav · grav-plugin-formEPSS 0.56%via NVD
CVE-2026-15550Medium· 4.3
3w ago

The Ninja Forms - Save Progress plugin for WordPress is vulnerable to Missing Authorization in versions up to, and including, 3.0.30

The Ninja Forms - Save Progress plugin for WordPress is vulnerable to Missing Authorization in versions up to, and including, 3.0.30. This is due to the lack of capability checks and nonce verification in the 'bulk_actions' function. Thi…

▾ SunlitEPSS 0.16%via NVD
CVE-2026-12843Medium· 5.4
3w ago

The LearnDash LMS plugin for WordPress is vulnerable to authorization bypass in versions 4.25.0 - 5.1.6

The LearnDash LMS plugin for WordPress is vulnerable to authorization bypass in versions 4.25.0 - 5.1.6. This is due to the plugin not properly verifying that a user is authorized to perform an action. This makes it possible for unauthen…

▾ SunlitEPSS 0.16%via NVD
CVE-2025-9049High· 8.8
3w ago

The Nokri – Job Board WordPress Theme theme for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on the 'nokri_account_member_permissions' function in all versions up to, and including, 1.6.4…

The Nokri – Job Board WordPress Theme theme for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on the 'nokri_account_member_permissions' function in all versions up to, and including, 1.6.4…

▾ TwilightEPSS 0.25%via NVD
CVE-2026-86178Medium· 5.4
3w ago

Pixelfed through 0.12.9 fails to validate follower status in StoryComposeController react and comment endpoints, allowing authenticated users to access follower-only stories

Pixelfed through 0.12.9 fails to validate follower status in StoryComposeController react and comment endpoints, allowing authenticated users to access follower-only stories. Attackers can enumerate sequential story IDs and submit reacti…

▾ Sunlitpixelfed · pixelfedEPSS 0.32%via NVD
CWE-862 vulnerabilities (CVEs) — page 21 · VulnSea