Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CWE-200 (信息暴露) — Vulnerability Class 2723

2723 vulnerabilities classified as CWE-200 (信息暴露). AI Chinese analysis included.

CVE IDTitleCVSSSeverityPublished
CVE-2022-26327 Stored cross-site scripting (XSS) has been discovered in OpenText™ Performance Center — Performance Center 7.5 -2024-08-21
CVE-2024-6568 Flamix: Bitrix24 and Contact Form 7 integrations <= 3.1.0 - Unauthenticated Full Path Disclosure — Flamix: Bitrix24 and Contact Form 7 integrations 5.3 Medium2024-08-21
CVE-2024-5880 Hide My Site <= 2.2 - Unauthenticated Information Exposure — Hide My Site 4.3 Medium2024-08-21
CVE-2024-41700 Barix – CWE-200 Exposure of Sensitive Information to an Unauthorized Actor — Barix SIP Client Web Management Interface UI 7.5 High2024-08-20
CVE-2024-41698 Priority – CWE-200: Exposure of Sensitive Information to an Unauthorized Actor — Priority 4.3 Medium2024-08-20
CVE-2024-7925 ZZCMS eginfo.php information disclosure — ZZCMS 4.3 Medium2024-08-19
CVE-2024-42486 Cilium vulnerable to information leakage via incorrect ReferenceGrant update logic in Gateway API — cilium 5.4 Medium2024-08-16
CVE-2024-7630 Relevanssi <= 4.22.2 (Free) and <= 2.25.1 (Premium) - Unauthenticated Information Exposure — Relevanssi Premium 5.3 Medium2024-08-16
CVE-2024-7843 SourceCodester Online Graduate Tracer System exportcs.php information disclosure — Online Graduate Tracer System 5.3 Medium2024-08-15
CVE-2024-7842 SourceCodester Online Graduate Tracer System export_it.php information disclosure — Online Graduate Tracer System 5.3 Medium2024-08-15
CVE-2024-7411 Newsletters <= 4.9.9 - Unauthenticated Full Path Disclosure — Newsletters 5.3 Medium2024-08-15
CVE-2024-7063 ElementsKit Pro <= 3.6.6 - Authenticated (Contributor+) Sensitive Information Exposure — ElementsKit Pro 4.3 Medium2024-08-15
CVE-2024-27120 Local File Inclusion in ComfortKey before version 24.1.2 — ComfortKey 7.5AIHighAI2024-08-14
CVE-2024-42435 Zoom Workplace Apps, SDKs, Rooms Clients, and Rooms Controllers - Sensitive Information Exposure — Zoom Workplace Apps, SDKs, Rooms Clients, and Rooms Controllers 4.9 Medium2024-08-14
CVE-2024-39822 Zoom Workplace Apps, SDKs, Rooms Clients, and Rooms Controllers - Sensitive Information Exposure — Zoom Workplace Apps, SDKs, Rooms Clients, and Rooms Controllers 6.5 Medium2024-08-14
CVE-2024-41723 BIG-IP iControl REST vulnerability — BIG-IP 4.3 Medium2024-08-14
CVE-2024-38760 WordPress Send Users Email plugin <= 1.5.1 - Sensitive Data Exposure vulnerability — Send Users Email 5.3 Medium2024-08-13
CVE-2024-38756 WordPress Coming Soon Page – Responsive Coming Soon & Maintenance Mode plugin <= 1.6.3 - Sensitive Data Exposure vulnerability — Coming Soon 5.3 Medium2024-08-13
CVE-2024-38749 WordPress Olive One Click Demo Import plugin <= 1.1.2 - Sensitive Data Exposure vulnerability — Olive One Click Demo Import 5.3 Medium2024-08-13
CVE-2024-38747 WordPress HitPay Payment Gateway for WooCommerce plugin <= 4.1.3 - Sensitive Data Exposure via Log File vulnerability — HitPay Payment Gateway for WooCommerce 7.5 High2024-08-13
CVE-2024-38742 WordPress MBE eShip plugin <= 2.1.2 - Sensitive Data Exposure vulnerability — MBE eShip 5.3 Medium2024-08-13
CVE-2024-41736 Information Disclosure vulnerability in SAP Permit to Work — SAP Permit to Work 4.3 Medium2024-08-13
CVE-2024-41733 Information Disclosure Vulnerability in SAP Commerce — SAP Commerce 5.3 Medium2024-08-13
CVE-2024-33003 Information Disclosure Vulnerability in SAP Commerce Cloud — SAP Commerce Cloud 7.4 High2024-08-13
CVE-2024-37924 WordPress WP2Speed Faster – Optimize PageSpeed Insights Score 90-100 plugin <= 1.0.1 - Sensitive Data Exposure vulnerability — WP2Speed Faster 5.3 Medium2024-08-12
CVE-2024-7704 Weaver e-cology Source Code ecology_dev.zip information disclosure — e-cology 5.3 Medium2024-08-12
CVE-2024-7410 My Custom CSS PHP & ADS <= 3.3 - Unauthenticated Full Path Disclosure — My Custom CSS PHP & ADS 5.3 Medium2024-08-09
CVE-2024-6562 affiliate-toolkit <= 3.5.5 - Unauthenticated Full Path Dislcosure — affiliate-toolkit – Multi-Network Affiliate & Amazon Product Display 5.3 Medium2024-08-09
CVE-2024-7412 No Update Nag <= 1.4.12 - Unauthenticated Full Path Disclosure — No Update Nag 5.3 Medium2024-08-09
CVE-2024-7416 Reveal Template <= 3.7 - Unauthenticated Full Path Disclosure — Reveal Template 5.3 Medium2024-08-09

Vulnerabilities classified as CWE-200 (信息暴露) represent 2723 CVEs. The CWE taxonomy describes the weakness; review individual CVEs for product-specific impact.