VulnSea

CWE-862

CVEs classified under CWE-862, newest first.

1332 CVEsRSS

CVE-2026-1832Medium· 4.3
2mo ago

The ThriveDesk – Live Chat, AI Chatbot, Helpdesk & Knowledge Base plugin for WordPress is vulnerable to unauthorized cache deletion due to a missing capability check on the 'thrivedesk_clear_cache' AJAX action in all versions up to, and …

The ThriveDesk – Live Chat, AI Chatbot, Helpdesk & Knowledge Base plugin for WordPress is vulnerable to unauthorized cache deletion due to a missing capability check on the 'thrivedesk_clear_cache' AJAX action in all versions up to, and …

▾ SunlitEPSS 0.35%via NVD
CVE-2026-13250Medium· 5.3
2mo ago

The Solace Extra plugin for WordPress is vulnerable to authorization bypass in all versions up to, and including, 1.5.3

The Solace Extra plugin for WordPress is vulnerable to authorization bypass in all versions up to, and including, 1.5.3. This is due to the plugin not properly verifying that a user is authorized to perform an action. This makes it possi…

▾ SunlitEPSS 0.47%via NVD
CVE-2026-8678Medium· 4.3
2mo ago

The MyParcel plugin for WordPress is vulnerable to authorization bypass in all versions up to, and including, 4.25.1

The MyParcel plugin for WordPress is vulnerable to authorization bypass in all versions up to, and including, 4.25.1. This is due to the plugin not properly verifying that a user is authorized to perform an action. This makes it possible…

▾ SunlitEPSS 0.40%via NVD
CVE-2026-10628Medium· 4.3
2mo ago

The Points and Rewards for WooCommerce plugin for WordPress is vulnerable to authorization bypass in all versions up to, and including, 2.10.0

The Points and Rewards for WooCommerce plugin for WordPress is vulnerable to authorization bypass in all versions up to, and including, 2.10.0. This is due to the plugin not properly verifying that a user is authorized to perform an acti…

▾ SunlitEPSS 0.58%via NVD
CVE-2026-58590None
2mo ago

Missing Authorization vulnerability in Drupal FlowDrop allows Forceful Browsing

Missing Authorization vulnerability in Drupal FlowDrop allows Forceful Browsing. This issue affects FlowDrop versions: from 0.0.0 to 1.6.0.

▾ SunlitEPSS 0.23%via NVD
CVE-2026-58589None
2mo ago

Missing Authorization vulnerability in Drupal FlowDrop allows Forceful Browsing

Missing Authorization vulnerability in Drupal FlowDrop allows Forceful Browsing. This issue affects FlowDrop versions: from 0.0.0 to 1.6.0.

▾ SunlitEPSS 0.23%via NVD
CVE-2026-49394None
2mo ago

Frappe is a full-stack web application framework

Frappe is a full-stack web application framework. Prior to 16.19.0, authorization bypass was possible via the update_page endpoint in Workspace because public workspaces did not receive the required Workspace Manager edit check. This iss…

▾ SunlitEPSS 0.54%via NVD
CVE-2026-48127None
2mo ago

Frappe is a full-stack web application framework

Frappe is a full-stack web application framework. Prior to 16.20.0 and 15.110.0, users without write access could attach files to any doctype through file-handling API endpoints such as add_attachments. This issue is fixed in versions 16…

▾ SunlitEPSS 0.61%via NVD
CVE-2026-47422None
2mo ago

Frappe is a full-stack web application framework

Frappe is a full-stack web application framework. Prior to 15.107.5 and 16.18.2, an endpoint in reportview lacked appropriate permission checks and that has since been fixed. This vulnerability is fixed in 15.107.5 and 16.18.2.

▾ SunlitEPSS 0.38%via NVD
CVE-2026-13241None
2mo ago

Missing Authorization vulnerability in Drupal Paragraphs allows Forceful Browsing

Missing Authorization vulnerability in Drupal Paragraphs allows Forceful Browsing. This issue affects Paragraphs versions: from 0.0.0 to 1.21.0.

▾ SunlitEPSS 0.27%via NVD
CVE-2026-13240None
2mo ago

Missing Authorization vulnerability in Drupal Paragraphs allows Forceful Browsing

Missing Authorization vulnerability in Drupal Paragraphs allows Forceful Browsing. This issue affects Paragraphs versions: from 0.0.0 to 1.21.0.

▾ SunlitEPSS 0.27%via NVD
CVE-2026-13239None
2mo ago

Missing Authorization vulnerability in Drupal WissKI allows Forceful Browsing

Missing Authorization vulnerability in Drupal WissKI allows Forceful Browsing. This issue affects WissKI versions: from 0.0.0 to 4.2.0.

▾ SunlitEPSS 0.27%via NVD
CVE-2026-13236None
2mo ago

Missing Authorization vulnerability in Drupal AI Agents allows Forceful Browsing

Missing Authorization vulnerability in Drupal AI Agents allows Forceful Browsing. This issue affects AI Agents versions: from 0.0.0 to 1.1.4, from 1.2.0 to 1.2.5, from 1.3.0 to 1.3.1.

▾ SunlitEPSS 0.19%via NVD
CVE-2026-13235None
2mo ago

Missing Authorization vulnerability in Drupal AI (Artificial Intelligence) allows Forceful Browsing

Missing Authorization vulnerability in Drupal AI (Artificial Intelligence) allows Forceful Browsing. This issue affects AI (Artificial Intelligence) versions: from 0.0.0 to 1.2.17, from 1.3.0 to 1.3.8, from 1.4.0 to 1.4.3.

▾ SunlitEPSS 0.21%via NVD
CVE-2026-11909None
2mo ago

Missing Authorization vulnerability in Drupal Examples for Developers allows Forceful Browsing

Missing Authorization vulnerability in Drupal Examples for Developers allows Forceful Browsing. This issue affects Examples for Developers versions: from 0.0.0 to 4.0.6.

▾ SunlitEPSS 0.21%via NVD
CVE-2026-10768NonePoC
2mo ago

Missing Authorization vulnerability in Drupal LocalGov Workflows allows Forceful Browsing

Missing Authorization vulnerability in Drupal LocalGov Workflows allows Forceful Browsing. This issue affects LocalGov Workflows versions: from 0.0.0 to 1.6.0.

▾ TwilightEPSS 2.1%via NVD
CVE-2026-57221None
2mo ago

RabbitMQ is a messaging and streaming broker

RabbitMQ is a messaging and streaming broker. Prior to 3.13.15, 4.0.20, 4.1.11, and 4.2.6, RabbitMQ does not perform authorization checks on passive queue.declare and exchange.declare AMQP 0-9-1 operations, allowing any authenticated use…

▾ SunlitEPSS 0.41%via NVD
CVE-2026-13039Medium· 5.3
2mo ago

The Eventin – Event Calendar, Event Registration, Tickets & Booking (AI Powered) plugin for WordPress is vulnerable to authorization bypass due to a regression in versions from 4.0.26 up to and including 4.1.15

The Eventin – Event Calendar, Event Registration, Tickets & Booking (AI Powered) plugin for WordPress is vulnerable to authorization bypass due to a regression in versions from 4.0.26 up to and including 4.1.15. This is due to the plugin…

▾ SunlitEPSS 0.35%via NVD
CVE-2026-57850High· 8.3PoC
2mo ago

RustDesk before 1.4.9 does not enforce a session's authorized connection scope on the server side, so a peer granted a limited session type (FileTransfer, PortForward, ViewCamera, or Terminal) can send control messages and login options …

RustDesk before 1.4.9 does not enforce a session's authorized connection scope on the server side, so a peer granted a limited session type (FileTransfer, PortForward, ViewCamera, or Terminal) can send control messages and login options …

▾ MidnightEPSS 0.50%via NVD
CVE-2026-59216High· 7.7
2mo ago

Open WebUI is an extensible, feature-rich, and user-friendly self-hosted AI platform

Open WebUI is an extensible, feature-rich, and user-friendly self-hosted AI platform. Prior to 0.10.0, get_event_call delivered execute:python and execute:tool Socket.IO events to a client-supplied session_id after checking only that the…

▾ Twilightopenwebui · open_webuiEPSS 0.45%via NVD
CVE-2026-59262Medium· 6.5PoC
2mo ago

AFFiNE's histories GraphQL field fails to validate Doc.Read permission before exposing document edit history, allowing authenticated workspace members to retrieve restricted content timelines

AFFiNE's histories GraphQL field fails to validate Doc.Read permission before exposing document edit history, allowing authenticated workspace members to retrieve restricted content timelines. Attackers can supply arbitrary document GUID…

▾ Twilightaffine · monorepoEPSS 0.41%via NVD
CVE-2026-31309Critical· 9.8PoC
2mo ago

Improper authorization in the /tequilapi/config/user endpoint of Mysterium Node from v1.21.1-rc0 before v1.36.0 allows an unauthenticated attacker to arbitrarily overwrite the node's configuration and achieve a full node takeover via a c…

Improper authorization in the /tequilapi/config/user endpoint of Mysterium Node from v1.21.1-rc0 before v1.36.0 allows an unauthenticated attacker to arbitrarily overwrite the node's configuration and achieve a full node takeover via a c…

▾ AbyssalEPSS 0.62%via NVD
CVE-2026-53634Medium· 4.3
2mo ago

Sharp Missing Authorization Check in Quick Creation Command Endpoints

Sharp Missing Authorization Check in Quick Creation Command Endpoints

▾ Sunlitcode16 · code16/sharpEPSS 0.37%via GHSA
CVE-2026-59704High· 7.1PoC
2mo ago

Cap - Missing Access Control in Video AI Metadata Endpoint

Cap's GET /api/video/ai endpoint fails to validate user ownership or membership before returning private video AI metadata including titles, summaries, and chapters. Authenticated attackers can supply arbitrary video IDs to read sensitiv…

▾ MidnightCap · CapEPSS 0.37%via CVEORG
CVE-2026-59708High· 7.5
2mo ago

The GET /api/v1/public/:accessId/portfolio endpoint in ghostfolio accepts private access IDs without validating granteeUserId filtering, allowing unauthenticated access to full portfolio data

The GET /api/v1/public/:accessId/portfolio endpoint in ghostfolio accepts private access IDs without validating granteeUserId filtering, allowing unauthenticated access to full portfolio data. Attackers with a private access ID can retri…

▾ Twilightghostfolio · ghostfolioEPSS 0.59%via NVD
CVE-2026-59709Medium· 4.3PoC
2mo ago

Ghostfolio's PUT /api/v1/portfolio/holding/:dataSource/:symbol/tags endpoint fails to verify Access.permissions field when processing the Impersonation-Id header, allowing read-only access grantees to modify portfolio holding tags

Ghostfolio's PUT /api/v1/portfolio/holding/:dataSource/:symbol/tags endpoint fails to verify Access.permissions field when processing the Impersonation-Id header, allowing read-only access grantees to modify portfolio holding tags. Attac…

▾ TwilightGhostfolio · GhostfolioEPSS 0.34%via NVD
CVE-2026-53514High· 7.7
2mo ago

Better Auth vulnerable to unauthorized invitation acceptance via unverified email match in organization plugin

Better Auth vulnerable to unauthorized invitation acceptance via unverified email match in organization plugin

▾ Twilightbetter-auth · better-authEPSS 0.20%via GHSA
GHSA-j8v8-g9cx-5qf4High· 8.3
2mo ago

@better-auth/scim: Account/provider takeover via missing owner binding on non-org SCIM providers

@better-auth/scim: Account/provider takeover via missing owner binding on non-org SCIM providers

▾ Twilightbetter-auth · @better-auth/scimvia GHSA
CVE-2026-55432Medium· 5.4
2mo ago

Coder's sub-agent app registration bypasses template port-sharing policy enforcement

Coder's sub-agent app registration bypasses template port-sharing policy enforcement

▾ Sunlitcoder · github.com/coder/coder/v2EPSS 0.32%via GHSA
CVE-2026-55433Medium· 5.4
2mo ago

Coder: Devcontainer recreate endpoint missing write authorization allows read-only roles to destroy containers

Coder: Devcontainer recreate endpoint missing write authorization allows read-only roles to destroy containers

▾ Sunlitcoder · github.com/coder/coder/v2EPSS 0.39%via GHSA
CWE-862 vulnerabilities (CVEs) — page 36 · VulnSea