CWE-285: Improper Authorization

The product does not perform or incorrectly performs an authorization check when an actor attempts to access a resource or perform an action.

1,375 tracked CVEs are classified under this weakness.

Highest-risk vulnerabilities

Recently published

More specific weaknesses

Browse the full CVE database