Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CWE-200 (信息暴露) — Vulnerability Class 2723

2723 vulnerabilities classified as CWE-200 (信息暴露). AI Chinese analysis included.

CVE IDTitleCVSSSeverityPublished
CVE-2024-20491 Cisco Nexus Dashboard Insights Information Disclosure Vulnerability — Cisco Nexus Dashboard Insights 6.3 Medium2024-10-02
CVE-2024-20490 Cisco Nexus Dashboard Fabric Controller and Nexus Dashboard Orchestrator Information Disclosure Vulnerability — Cisco Data Center Network Manager 6.3 Medium2024-10-02
CVE-2024-47532 RestrictedPython information leakage via `AttributeError.obj` and the `string` module — RestrictedPython 6.5 -2024-09-30
CVE-2024-45792 MantisBT vulnerable to information disclosure with user profiles — mantisbt 6.5 -2024-09-30
CVE-2024-47197 Maven Archetype Plugin: Maven Archetype integration-test may package local settings into the published artifact, possibly containing credentials — Maven Archetype Plugin 7.5AIHighAI2024-09-26
CVE-2024-43237 WordPress Tag Groups plugin <= 2.0.3 - Sensitive Data Exposure vulnerability — WordPress Tag Cloud Plugin – Tag Groups 5.3 Medium2024-09-25
CVE-2024-8516 Themesflat Addons For Elementor <= 2.2.1 - Authenticated (Contributor+) Information Exposure — Themesflat Addons For Elementor 4.3 Medium2024-09-25
CVE-2024-8483 MAS Static Content <= 1.0.8 - Authenticated (Contributor+) Private Static Content Page Disclosure — MAS Static Content 4.3 Medium2024-09-25
CVE-2024-7426 Community by PeepSo – Social Network, Membership, Registration, User Profiles <= 6.4.6.0 - Unauthenticated Full Path Disclosure — Community by PeepSo – Download from PeepSo.com 5.3 Medium2024-09-25
CVE-2024-8801 Happy Addons for Elementor <= 3.12.2 - Authenticated (Contributor+) Sensitive Information Exposure — Happy Addons for Elementor 4.3 Medium2024-09-24
CVE-2023-5359 W3 Total Cache <= 2.7.5 - Sensitive Credentials Stored in Plaintext — W3 Total Cache 3.7 Low2024-09-24
CVE-2024-42351 Possible Data Tampering & Loss of Public Datasets in Galaxy — galaxy 6.5 Medium2024-09-20
CVE-2024-8612 Qemu-kvm: information leak in virtio devices 3.8 Low2024-09-20
CVE-2024-47060 Unauthorized Access After Organization or Project Deactivation in Zitadel — zitadel 4.3 Medium2024-09-19
CVE-2024-47059 Users enumeration - weak password login — Mautic 4.3 Medium2024-09-18
CVE-2024-46979 Data leak of notification filters of users in XWiki Platform — xwiki-platform 5.3 Medium2024-09-18
CVE-2024-46987 Arbitrary path traversal in Camaleon CMS — camaleon-cms 7.7 High2024-09-18
CVE-2024-8969 The SYSCOM Group OMFLOW - Exposure of Sensitive Data — OMFLOW 6.5 Medium2024-09-18
CVE-2024-45811 server.fs.deny bypassed when using ?import&raw in vite — vite 4.8 Medium2024-09-17
CVE-2024-8780 The SYSCOM Group OMFLOW - Improper Authorization for Data Query Function — OMFLOW 6.5 Medium2024-09-16
CVE-2024-8777 The SYSCOM Group OMFLOW - Information Leakage — OMFLOW 7.5 High2024-09-16
CVE-2024-6544 Custom Post Limits <= 4.4.1 - Unauthenticated Full Path Disclosure — Custom Post Limits 5.3 Medium2024-09-13
CVE-2024-8097 Sensitive information exposure when the org.glassfish.admingui LOGGER is set to FINEST level — Payara Server 6.5AIMediumAI2024-09-11
CVE-2024-27113 Insecure Direct Object Reference to export Database in SOPlanning before 1.52.02 — SO Planning 6.2AIMediumAI2024-09-11
CVE-2024-31490 Fortinet FortiSandbox 信息泄露漏洞 — FortiSandbox 4.2 Medium2024-09-10
CVE-2024-37991 Siemens SIMATIC 信息泄露漏洞 — SIMATIC Reader RF610R CMIIT 5.3 Medium2024-09-10
CVE-2024-8538 Big File Uploads <= 2.1.2 - Authenticated (Author+) Full Path Disclosure — Big File Uploads – Increase Maximum File Upload Size 4.3 Medium2024-09-07
CVE-2024-45039 gnark's Groth16 commitment extension unsound for more than one commitment — gnark 6.2 Medium2024-09-06
CVE-2024-45040 gnark's commitments to private witnesses in Groth16 as implemented break zero-knowledge property — gnark 5.9 Medium2024-09-06
CVE-2024-7415 Remember Me Controls <= 2.0.1 - Unauthenticated Full Path Disclosure — Remember Me Controls 5.3 Medium2024-09-06

Vulnerabilities classified as CWE-200 (信息暴露) represent 2723 CVEs. The CWE taxonomy describes the weakness; review individual CVEs for product-specific impact.