Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CWE-200 (信息暴露) — Vulnerability Class 2723

2723 vulnerabilities classified as CWE-200 (信息暴露). AI Chinese analysis included.

CVE IDTitleCVSSSeverityPublished
CVE-2024-29897 CreateWiki Leak of suppressed wiki requests outside of `CreateWikiGlobalWiki` — CreateWiki 4.9 Medium2024-03-28
CVE-2023-52231 WordPress Booster Plus for WooCommerce plugin < 7.1.2 - Auth. Sensitive Data Exposure vulnerability — Booster Plus for WooCommerce 6.5 Medium2024-03-28
CVE-2023-52234 WordPress Booster Elite for WooCommerce plugin < 7.1.2 - Auth. Sensitive Data Exposure vulnerability — Booster Elite for WooCommerce 6.5 Medium2024-03-28
CVE-2024-28247 Pihole Authenticated Arbitrary File Read with root privileges — pi-hole 7.6 High2024-03-27
CVE-2023-27630 WordPress Community by PeepSo plugin <= 6.0.9.0 - Server Information Disclosure — Community by PeepSo 5.3 Medium2024-03-26
CVE-2023-25965 WordPress Upload Resume plugin <= 1.2.0 - Sensitive Data Exposure vulnerability — Upload Resume 5.9 Medium2024-03-26
CVE-2024-29197 Pimcore Preview Documents are not restricted to logged in users anymore — pimcore 6.5 Medium2024-03-26
CVE-2024-29883 CreateWiki's wiki request suppression ignores the suppression settings set by the suppressor — CreateWiki 4.9 Medium2024-03-26
CVE-2024-30233 WordPress WholesaleX plugin <= 1.3.1 - Sensitive Data Exposure on User Export vulnerability — WholesaleX 6.5 Medium2024-03-26
CVE-2024-29199 Unauthenticated views may expose information to anonymous users — nautobot 3.7 Low2024-03-26
CVE-2023-48296 OroPlatform's storefront user can access history and most viewed data from matching back-office user with the same ID — orocommerce 4.3 Medium2024-03-25
CVE-2023-45824 OroPlatform's pinned entity creation form shows pages of other users — platform 4.3 Medium2024-03-25
CVE-2022-32751 IBM Security Verify Directory information disclosure — Security Verify Directory 5.3 Medium2024-03-22
CVE-2024-2728 Information exposure vulnerability in the CIGESv2 system — CIGESv2 4.1 Medium2024-03-22
CVE-2024-2725 Exposure of Sensitive Information vulnerability in the CIGESv2 system — CIGESv2 7.5 High2024-03-22
CVE-2024-2080 LiquidPoll – Polls, Surveys, NPS and Feedback Reviews <= 3.3.76 - Information Exposure — LiquidPoll – Polls, Surveys, NPS and Feedback Reviews 4.3 Medium2024-03-22
CVE-2024-27277 IBM Storage Protect Plus Server information disclosure — Storage Protect Plus Server 6.2 Medium2024-03-21
CVE-2024-2740 Exposure of Sensitive Information to an Unauthorized Actor in Planet IGS-4215-16T2S — IGS-4215-16T2S 7.7 High2024-03-21
CVE-2024-29036 Saleor Storefront session leak in cache — storefront 4.3 Medium2024-03-20
CVE-2024-27286 Moving single messages from public to private streams leaves them accessible — zulip 6.5 Medium2024-03-20
CVE-2024-1477 Easy Maintenance Mode <= 1.4.2 - Information Exposure — Easy Maintenance Mode 5.3 Medium2024-03-20
CVE-2024-2632 Information Exposure Vulnerability on Meta4 HR — Meta4 HR 7.5 High2024-03-19
CVE-2024-26063 Adobe Experience Manager | Information Exposure (CWE-200) — Adobe Experience Manager 5.3 Medium2024-03-18
CVE-2024-26119 Adobe Experience Manager | Information Exposure (CWE-200) — Adobe Experience Manager 5.3 Medium2024-03-18
CVE-2024-27769 Unitronics Unistream Unilogic – Versions prior to 1.35.227 CWE-200: Exposure of Sensitive Information to an Unauthorized Actor — Unistream Unilogic 8.8 High2024-03-18
CVE-2024-25903 WordPress Frontend File Manager Plugin plugin <= 22.7 - Sensitive Data Exposure vulnerability — Frontend File Manager 5.3 Medium2024-03-17
CVE-2024-25591 WordPress WP Editor plugin <=1.2.7 - Sensitive Data Exposure vulnerability — WP Editor 5.3 Medium2024-03-17
CVE-2024-24867 WordPress WP Stats Manager plugin <= 6.9.4 - Sensitive Data Exposure vulnerability — WP Visitor Statistics (Real Time Traffic) 5.3 Medium2024-03-17
CVE-2024-25933 WordPress PeproDev Ultimate Invoice plugin <= 1.9.7 - Sensitive Data Exposure vulnerability — PeproDev Ultimate Invoice 5.3 Medium2024-03-17
CVE-2024-24845 WordPress Post Thumbnail Editor plugin <= 2.4.8 - Unauthenticated Sensitive Data Exposure vulnerability — Post Thumbnail Editor 5.3 Medium2024-03-16

Vulnerabilities classified as CWE-200 (信息暴露) represent 2723 CVEs. The CWE taxonomy describes the weakness; review individual CVEs for product-specific impact.