CWE-285— Improper Authorization
1,227 active CVEs classified under this weakness category. Sourced from NVD, GHSA, and vendor advisories. Full definition on MITRE →
CVEs classified under CWE-285page 15 of 25
- CVE-2024-5053MEDIUMCVSS 4.2EG 4.22024-09-01
The Contact Form Plugin by Fluent Forms for Quiz, Survey, and Drag & Drop WP Form Builder plugin for WordPress is vulnerable to unauthorized Malichimp API key update due to an insufficient capability check on the verifyRequest function in …
- CVE-2024-50617HIGHCVSS 7.5EG 7.52026-02-11
Vulnerabilities in the File Download and Get File handler components in CIPPlanner CIPAce before 9.17 allow attackers to download unauthorized files. An authenticated user can easily change the file id parameter or pass the physical file p…
- CVE-2024-51479HIGHCVSS 7.5EG 7.52024-12-17
Next.js is a React framework for building full-stack web applications. In affected versions if a Next.js application is performing authorization in middleware based on pathname, it was possible for this authorization to be bypassed for pag…
- CVE-2024-51525MEDIUMCVSS 6.2EG 6.22024-11-05
Permission control vulnerability in the clipboard module Impact: Successful exploitation of this vulnerability may affect service confidentiality.
- CVE-2024-52287HIGHCVSS 7.2EG 7.22024-11-21
authentik is an open-source identity provider. When using the client_credentials or device_code OAuth grants, it was possible for an attacker to get a token from authentik with scopes that haven't been configured in authentik. authentik 20…
- CVE-2024-52528CRITICALCVSS 9.3EG 0.02024-11-15
Budget Control Gateway acts as an entry point for incoming requests and routes them to the appropriate microservices for Budget Control. Budget Control Gateway does not properly validate auth tokens, which allows attackers to bypass intend…
- CVE-2024-55954HIGHCVSS 8.7EG 8.72025-01-16
OpenObserve is a cloud-native observability platform. A vulnerability in the user management endpoint `/api/{org_id}/users/{email_id}` allows an "Admin" role user to remove a "Root" user from the organization. This violates the intended pr…
- CVE-2024-56320HIGHCVSS 8.8EG 8.82025-01-03
GoCD is a continuous deliver server. GoCD versions prior to 24.5.0 are vulnerable to admin privilege escalation due to improper authorization of access to the admin "Configuration XML" UI feature, and its associated API. A malicious inside…
- CVE-2024-56323CRITICALCVSS 9.8EG 9.82025-01-13
OpenFGA is an authorization/permission engine. IN OpenFGA v1.3.8 to v1.8.2 (Helm chart openfga-0.1.38 to openfga-0.2.19, docker v1.3.8 to v.1.8.2) are vulnerable to authorization bypass under the following conditions: 1. calling Check API…
- CVE-2024-56335HIGHCVSS 7.6EG 7.62024-12-20
vaultwarden is an unofficial Bitwarden compatible server written in Rust, formerly known as bitwarden_rs. In affected versions an attacker is capable of updating or deleting groups from an organization given a few conditions: 1. The attack…
- CVE-2024-56802HIGHCVSS 8.7EG 0.02024-12-31
Tapir is a private Terraform registry. Tapir versions 0.9.0 and 0.9.1 are facing a critical issue with scope-able Deploykeys where attackers can guess the key to get write access to the registry. User must upgrade to 0.9.2.
- CVE-2024-57954MEDIUMCVSS 6.2EG 6.22025-02-06
Permission verification vulnerability in the media library module Impact: Successful exploitation of this vulnerability may affect service confidentiality.
- CVE-2024-6000HIGHCVSS 7.1EG 7.12024-06-15
The FooEvents for WooCommerce plugin for WordPress is vulnerable to unauthorized arbitrary file uploads due to an improper capability setting on the 'display_ticket_themes_page' function in versions up to, and including, 1.19.20. This make…
- CVE-2024-6347MEDIUMCVSS 6.5EG 6.52024-08-15
* Unprotected privileged mode access through UDS session in the Blind Spot Detection Sensor ECU firmware in Nissan Altima (2022) allows attackers to trigger denial-of-service (DoS) by unauthorized access to the ECU's programming session. …
- CVE-2024-6375MEDIUMCVSS 5.4EG 5.42024-07-01
A command for refining a collection shard key is missing an authorization check. This may cause the command to run directly on a shard, leading to either degradation of query performance, or to revealing chunk boundaries through timing sid…
- CVE-2024-6384MEDIUMCVSS 5.3EG 5.32024-08-13
"Hot" backup files may be downloaded by underprivileged users, if they are capable of acquiring a unique backup identifier. This issue affects MongoDB Enterprise Server v6.0 versions prior to 6.0.16, MongoDB Enterprise Server v7.0 versions…
- CVE-2024-6840MEDIUMCVSS 6.6EG 6.62024-09-12
An improper authorization flaw exists in the Ansible Automation Controller. This flaw allows an attacker using the k8S API server to send an HTTP request with a service account token mounted via `automountServiceAccountToken: true`, result…
- CVE-2024-7015CRITICALCVSS 9.8EG 9.82024-09-09
Missing Authentication for Critical Function vulnerability in Profelis Informatics and Consulting PassBox allows Authentication Abuse. This issue affects PassBox: before v1.2.
- CVE-2024-7578HIGHCVSS 7.3EG 7.32024-08-07
A vulnerability was found in Alien Technology ALR-F800 up to 19.10.24.00. It has been classified as critical. Affected is an unknown function of the file /var/www/cmd.php. The manipulation of the argument cmd leads to improper authorizatio…
- CVE-2024-7624HIGHCVSS 8.1EG 8.12024-08-15
The Zephyr Project Manager plugin for WordPress is vulnerable to limited privilege escalation in all versions up to, and including, 3.3.101. This is due to the plugin not properly checking a users capabilities before allowing them to enabl…
- CVE-2024-7799MEDIUMCVSS 5.3EG 5.32024-08-15
A vulnerability was found in SourceCodester Simple Online Bidding System 1.0. It has been rated as critical. Affected by this issue is some unknown functionality of the file /simple-online-bidding-system/bidding/admin/users.php. The manipu…
- CVE-2024-7851MEDIUMCVSS 6.3EG 6.32024-08-16
A vulnerability has been found in SourceCodester Yoga Class Registration System 1.0 and classified as critical. This vulnerability affects unknown code of the file /classes/Users.php?f=save of the component Add User Handler. The manipulati…
- CVE-2024-8181CRITICALCVSS 9.8EG 7.32024-08-27
An Authentication Bypass vulnerability exists in Flowise version 1.8.2. This could allow a remote, unauthenticated attacker to access API endpoints as an administrator and allow them to access restricted functionality.
- CVE-2024-8509HIGHCVSS 7.5EG 7.52024-09-06
A vulnerability was found in Forklift Controller. There is no verification against the authorization header except to ensure it uses bearer authentication. Without an Authorization header and some form of a Bearer token, a 401 error occu…
- CVE-2024-8676HIGHCVSS 7.4EG 7.42024-11-26
A vulnerability was found in CRI-O, where it can be requested to take a checkpoint archive of a container and later be asked to restore it. When it does that restoration, it attempts to restore the mounts from the restore archive instead o…
- CVE-2024-8764HIGHCVSS 7.5EG 7.52025-03-20
A vulnerability in lunary-ai/lunary, as of commit be54057, allows users to upload and execute arbitrary regular expressions on the server side. This can lead to a Denial of Service (DoS) condition, as certain regular expressions can cause …
- CVE-2024-9000MEDIUMCVSS 6.5EG 7.12025-03-20
In lunary-ai/lunary before version 1.4.26, the checklists.post() endpoint allows users to create or modify checklists without validating whether the user has proper permissions. This missing access control permits unauthorized users to cre…
- CVE-2024-9082MEDIUMCVSS 6.3EG 6.32024-09-22
A vulnerability was found in SourceCodester Online Eyewear Shop 1.0. It has been rated as critical. Affected by this issue is some unknown functionality of the file /classes/Users.php?f=save of the component User Creation Handler. The mani…
- CVE-2024-9095CRITICALCVSS 9.8EG 9.82025-03-20
In lunary-ai/lunary version v1.4.28, the /bigquery API route lacks proper access control, allowing any logged-in user to create a Datastream to Google BigQuery and export the entire database. This includes sensitive data such as password h…
- CVE-2024-9096HIGHCVSS 7.1EG 7.62025-03-20
In lunary-ai/lunary version 1.4.28, the /checklists/:id route allows low-privilege users to modify checklists by sending a PATCH request. The route lacks proper access control, such as middleware to ensure that only authorized users (e.g.,…
- CVE-2024-9235HIGHCVSS 8.8EG 8.82024-10-25
The Mapster WP Maps plugin for WordPress is vulnerable to unauthorized modification of data that can lead to privilege escalation due to an insufficient capability check on the mapster_wp_maps_set_option_from_js() function in all versions …
- CVE-2024-9297MEDIUMCVSS 6.3EG 6.32024-09-28
A vulnerability was found in SourceCodester Online Railway Reservation System 1.0. It has been declared as critical. Affected by this vulnerability is an unknown functionality of the file /admin/. The manipulation of the argument page with…
- CVE-2024-9531MEDIUMCVSS 4.3EG 4.32024-10-24
The MultiVendorX – The Ultimate WooCommerce Multivendor Marketplace Solution plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on the 'mvx_sent_deactivation_request' function in all…
- CVE-2025-0484HIGHCVSS 7.3EG 7.32025-01-15
A vulnerability was found in Fanli2012 native-php-cms 1.0 and classified as critical. This issue affects some unknown processing of the file /fladmin/sysconfig_doedit.php of the component Backend. The manipulation leads to improper authori…
- CVE-2025-0580MEDIUMCVSS 5.6EG 5.62025-01-20
A vulnerability was found in Shiprocket Module 3 on OpenCart. It has been rated as critical. Affected by this issue is some unknown functionality of the file /index.php?route=extension/module/rest_api&action=getOrders of the component REST…
- CVE-2025-0849MEDIUMCVSS 6.3EG 6.32025-01-30
A vulnerability classified as critical has been found in CampCodes School Management Software 1.0. Affected is an unknown function of the file /edit-staff/ of the component Staff Handler. The manipulation leads to improper authorization. I…
- CVE-2025-0928HIGHCVSS 8.8EG 8.82025-07-08
In Juju versions prior to 3.6.8 and 2.9.52, any authenticated controller user was allowed to upload arbitrary agent binaries to any model or to the controller itself, without verifying model membership or requiring explicit permissions. Th…
- CVE-2025-10014LOWCVSS 3.1EG 3.12025-09-05
A flaw has been found in elunez eladmin up to 2.7. This impacts the function updateUserEmail of the file /api/users/updateEmail/ of the component Email Address Handler. Executing manipulation of the argument id/email can lead to improper a…
- CVE-2025-1007MEDIUMCVSS 5.3EG 5.32025-02-19
In OpenVSX version v0.9.0 to v0.20.0, the /user/namespace/{namespace}/details API allows a user to edit all namespace details, even if the user is not a namespace Owner or Contributor. The details include: name, description, website, su…
- CVE-2025-10073MEDIUMCVSS 4.3EG 4.32025-09-08
A vulnerability was determined in Portabilis i-Educar up to 2.10. Impacted is an unknown function of the file /module/Api/turma. Executing manipulation can lead to improper authorization. It is possible to launch the attack remotely. The e…
- CVE-2025-10084MEDIUMCVSS 4.3EG 4.32025-09-08
A vulnerability was identified in elunez eladmin up to 2.7. This affects the function queryErrorLogDetail of the file /api/logs/error/1 of the component SysLogController. The manipulation leads to improper authorization. It is possible to …
- CVE-2025-10086MEDIUMCVSS 6.3EG 6.32025-09-08
A weakness has been identified in fuyang_lipengjun platform 1.0.0. This issue affects the function queryAll of the file /adposition/queryAll of the component AdPositionController. This manipulation causes improper authorization. The attack…
- CVE-2025-10209MEDIUMCVSS 5.4EG 5.42025-09-10
A security flaw has been discovered in Papermerge DMS up to 3.5.3. This issue affects some unknown processing of the component Authorization Token Handler. Performing manipulation results in improper authorization. The attack can be initia…
- CVE-2025-10275MEDIUMCVSS 6.3EG 6.32025-09-12
A weakness has been identified in YunaiV yudao-cloud up to 2025.09. This affects an unknown part of the file /crm/business/transfer. Executing manipulation of the argument ids/newOwnerUserId can lead to improper authorization. The attack m…
- CVE-2025-10276MEDIUMCVSS 6.3EG 6.32025-09-12
A security vulnerability has been detected in YunaiV ruoyi-vue-pro up to 2025.09. This vulnerability affects unknown code of the file /crm/contract/transfer. The manipulation of the argument id/newOwnerUserId leads to improper authorizatio…
- CVE-2025-10277MEDIUMCVSS 6.3EG 6.32025-09-12
A vulnerability was detected in YunaiV yudao-cloud up to 2025.09. This issue affects some unknown processing of the file /crm/receivable/submit. The manipulation of the argument ID results in improper authorization. The attack can be execu…
- CVE-2025-10278MEDIUMCVSS 6.3EG 6.32025-09-12
A flaw has been found in YunaiV ruoyi-vue-pro up to 2025.09. Impacted is an unknown function of the file /crm/contact/transfer. This manipulation of the argument ids/newOwnerUserId causes improper authorization. The attack is possible to b…
- CVE-2025-10291MEDIUMCVSS 6.3EG 6.32025-09-12
A weakness has been identified in linlinjava litemall up to 1.8.0. This affects the function WxAftersaleController of the file /wx/aftersale/cancel. Executing manipulation of the argument ID can lead to improper authorization. The attack c…
- CVE-2025-10318MEDIUMCVSS 6.3EG 6.32025-09-12
A vulnerability was identified in JeecgBoot up to 3.8.2. Affected by this vulnerability is an unknown functionality of the file /api/system/sendWebSocketMsg of the component WebSocket Message Handler. The manipulation of the argument userI…
- CVE-2025-10319MEDIUMCVSS 4.3EG 4.32025-09-12
A security flaw has been discovered in JeecgBoot up to 3.8.2. Affected by this issue is some unknown functionality of the file /sys/tenant/exportLog of the component Tenant Log Export. The manipulation results in improper authorization. Th…
Map vulnerabilities like CWE-285 to your infrastructure
EchelonGraph correlates every CVE — across CWE-285 and 150+ other weakness categories — against the assets you actually run. See blast radius, fix versions, and remediation steps in one graph.
Start Free Scan →