CWE-284: Improper Access Control

The product does not restrict or incorrectly restricts access to a resource from an unauthorized actor.

3,335 tracked CVEs are classified under this weakness.

Highest-risk vulnerabilities

Recently published

More specific weaknesses

Browse the full CVE database