Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CWE-200 (信息暴露) — Vulnerability Class 2723

2723 vulnerabilities classified as CWE-200 (信息暴露). AI Chinese analysis included.

CVE IDTitleCVSSSeverityPublished
CVE-2024-1208 LearnDash LMS <= 4.10.2 - Sensitive Information Exposure via API — LearnDash LMS 5.3 Medium2024-02-05
CVE-2024-1209 LearnDash LMS <= 4.10.1 - Sensitive Information Exposure via assignments — LearnDash LMS 5.3 Medium2024-02-05
CVE-2024-1210 LearnDash LMS <= 4.10.1 - Sensitive Information Exposure via API — LearnDash LMS 5.3 Medium2024-02-05
CVE-2023-33851 IBM PowerVM Hypervisor information disclosure — PowerVM Hypervisor 5.3 Medium2024-02-04
CVE-2024-0909 Anonymous Restricted Content <= 1.6.2 - Protection Mechanism Bypass — Anonymous Restricted Content 5.3 Medium2024-02-03
CVE-2024-1200 Jspxcms information disclosure — Jspxcms 5.3 Medium2024-02-03
CVE-2024-24757 open-irs .env Exposure — open-irs 7.6 High2024-02-02
CVE-2024-24755 discourse-group-membership-ip-block is exposing potentially sensitive custom fields — discourse-group-membership-ip-block 4.3 Medium2024-02-01
CVE-2024-1098 Rebuild proxy-download QiniuCloud.getStorageFile information disclosure — Rebuild 4.3 Medium2024-01-31
CVE-2023-44312 Apache ServiceComb Service-Center: attacker can query all environment variables of the service-center server — Apache ServiceComb Service-Center 5.8 Medium2024-01-31
CVE-2024-22200 vantage6-UI docker image leaks software version information — vantage6-UI 3.3 Low2024-01-30
CVE-2024-1033 openBI Datament.php agent information disclosure — openBI 4.3 Medium2024-01-30
CVE-2023-52187 WordPress Image Source Control Plugin <= 2.17.0 is vulnerable to Sensitive Data Exposure — Image Source Control Lite – Show Image Credits and Captions 5.3 Medium2024-01-26
CVE-2024-22141 WordPress Profile Builder Pro Plugin <= 3.10.0 is vulnerable to Sensitive Data Exposure — Profile Builder Pro 6.5 Medium2024-01-24
CVE-2024-22154 WordPress SalesKing Plugin <= 1.6.15 is vulnerable to Sensitive Data Exposure — SalesKing 7.5 High2024-01-24
CVE-2024-22294 WordPress Download IP2Location Country Blocker Plugin <= 2.33.3 is vulnerable to Sensitive Data Exposure — IP2Location Country Blocker 5.3 Medium2024-01-24
CVE-2024-22301 WordPress Albo Pretorio Online Plugin <= 4.6.6 is vulnerable to Sensitive Data Exposure — Albo Pretorio On line 5.3 Medium2024-01-24
CVE-2023-48714 Record titles for restricted records can be viewed if exposed by GridFieldAddExistingAutocompleter — silverstripe-framework 4.3 Medium2024-01-23
CVE-2024-22421 Potential authentication and CSRF tokens leak in JupyterLab — jupyterlab 7.6 High2024-01-19
CVE-2024-0717 D-Link Good Line Router v2 HTTP GET Request devinfo information disclosure — DAP-1360 5.3 Medium2024-01-19
CVE-2024-0716 Byzoro Smart S150 Management Platform Backup File download.php information disclosure — Smart S150 Management Platform 3.1 Low2024-01-19
CVE-2022-47160 WordPress Wp Social Plugin <= 1.9.0 is vulnerable to Sensitive Data Exposure — Wp Social Login and Register Social Counter 6.5 Medium2024-01-19
CVE-2023-28901 Trip Data Disclosure from Backend — Skoda Connect 5.3 Medium2024-01-18
CVE-2023-28900 Nickname Disclosure on the Backend Automotive Server — Škoda Connect 5.3 Medium2024-01-18
CVE-2023-7031 Avaya Experience Portal Manager Insecure Direct Object Reference Vulnerabilities — Experience Portal Manager 5.7 Medium2024-01-17
CVE-2023-50950 IBM QRadar information disclosure — QRadar SIEM 3.7 Low2024-01-17
CVE-2023-45236 Predictable TCP ISNs in EDK II Network Package — edk2 5.8 Medium2024-01-16
CVE-2024-0569 Totolink T8 Setting cstecgi.cgi getSysStatusCfg information disclosure — T8 4.3 Medium2024-01-16
CVE-2023-44112 Huawei HarmonyOS 安全漏洞 — HarmonyOS 7.5AIHighAI2024-01-16
CVE-2023-50290 Apache Solr: Host environment variables are published via the Metrics API — Apache Solr 7.5 -2024-01-15

Vulnerabilities classified as CWE-200 (信息暴露) represent 2723 CVEs. The CWE taxonomy describes the weakness; review individual CVEs for product-specific impact.