Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CWE-200 (信息暴露) — Vulnerability Class 2723

2723 vulnerabilities classified as CWE-200 (信息暴露). AI Chinese analysis included.

CVE IDTitleCVSSSeverityPublished
CVE-2024-0490 Huaxia ERP getAllList information disclosure — ERP 5.3 Medium2024-01-13
CVE-2024-0472 code-projects Dormitory Management System modifyuser.php information disclosure — Dormitory Management System 3.5 Low2024-01-12
CVE-2023-6266 Backup Migration <= 1.3.6 - Unauthenticated Arbitrary Backup Download to Sensitive Information Exposure — BackupBliss – Backup & Migration with Free Cloud Storage 7.5 High2024-01-11
CVE-2024-21320 Windows Themes Spoofing Vulnerability — Windows 10 Version 1809 6.5 Medium2024-01-09
CVE-2024-0340 Kernel: information disclosure in vhost/vhost.c:vhost_new_msg() 4.4 Medium2024-01-09
CVE-2022-40696 WordPress Advanced Custom Fields Plugin 3.1.1-6.0.2 is vulnerable to Sensitive Data Exposure — Advanced Custom Fields (ACF) 3.7 Low2024-01-08
CVE-2022-45354 WordPress Download Monitor Plugin <= 4.7.60 is vulnerable to Sensitive Data Exposure — Download Monitor 5.3 Medium2024-01-08
CVE-2023-51406 WordPress FastDup Plugin <= 2.1.7 is vulnerable to Sensitive Data Exposure — FastDup – Fastest WordPress Migration & Duplicator 5.3 Medium2024-01-08
CVE-2023-52208 WordPress Constant Contact Forms Plugin <= 2.4.2 is vulnerable to Sensitive Data Exposure — Constant Contact Forms 5.3 Medium2024-01-08
CVE-2024-0305 Guangzhou Yingke Electronic Technology Ncast Guest Login IPSetup.php information disclosure — Ncast 5.3 Medium2024-01-08
CVE-2023-52126 WordPress Send Users Email Plugin <= 1.4.3 is vulnerable to Sensitive Data Exposure — Send Users Email 5.3 Medium2024-01-05
CVE-2023-52148 WordPress Affiliates Manager Plugin <= 2.9.30 is vulnerable to Sensitive Data Exposure — Affiliates Manager 5.3 Medium2024-01-05
CVE-2023-52151 WordPress Uncanny Automator Plugin <= 5.1.0.2 is vulnerable to Sensitive Data Exposure — Uncanny Automator – Automate everything with the #1 no-code automation and integration plugin 5.3 Medium2024-01-05
CVE-2023-50253 laf logs leak — laf 9.7 Critical2024-01-03
CVE-2023-46741 CubeFS leaks magic secret key when starting Blobstore access service — cubefs 4.8 Medium2024-01-03
CVE-2023-4164 There is a possible information disclosure due to a missing permission check in Pixel Watch — Pixel Watch 8.4 High2024-01-02
CVE-2023-48732 Keywords that trigger mentions are leaked to other users — Mattermost 4.3 Medium2024-01-02
CVE-2023-52185 WordPress Everest Backup Plugin <= 2.1.9 is vulnerable to Sensitive Data Exposure — Everest Backup – WordPress Cloud Backup, Migration, Restore & Cloning Plugin 5.3 Medium2023-12-31
CVE-2023-51527 WordPress GPT3 AI Content Writer Plugin <= 1.8.2 is vulnerable to Sensitive Data Exposure — AI Power: Complete AI Pack – Powered by GPT-4 5.3 Medium2023-12-29
CVE-2023-51688 WordPress eCommerce Product Catalog Plugin <= 3.3.26 is vulnerable to Sensitive Data Exposure — eCommerce Product Catalog Plugin for WordPress 5.3 Medium2023-12-29
CVE-2023-51687 WordPress Product Catalog Simple Plugin <= 1.7.6 is vulnerable to Sensitive Data Exposure — Product Catalog Simple 5.3 Medium2023-12-29
CVE-2022-44589 WordPress miniOrange's Google Authenticator Plugin <= 5.6.1 is vulnerable to Sensitive Data Exposure — miniOrange's Google Authenticator – WordPress Two Factor Authentication – 2FA , Two Factor, OTP SMS and Email | Passwordless login 8.1 High2023-12-29
CVE-2022-36399 WordPress Booked Plugin < 2.4.4 is vulnerable to Sensitive Data Exposure — Booked - Appointment Booking for WordPress | Calendars 5.3 Medium2023-12-28
CVE-2023-27447 WordPress WP SMS Plugin <= 6.0.4 is vulnerable to Sensitive Data Exposure — WP SMS – Messaging & SMS Notification for WordPress, WooCommerce, GravityForms, etc 5.3 Medium2023-12-28
CVE-2023-50968 Apache OFBiz: Arbitrary file properties reading and SSRF attack — Apache OFBiz 6.5AIMediumAI2023-12-26
CVE-2023-7094 Netentsec NS-ASG Application Security Gateway nsasg6.0.tgz information disclosure — NS-ASG Application Security Gateway 5.3 Medium2023-12-25
CVE-2023-40058 Sensitive Information Disclosure Vulnerability — Access Rights Manager 6.5 Medium2023-12-21
CVE-2023-28421 WordPress WordPress Email Marketing Plugin – WP Email Capture Plugin <= 3.10 is vulnerable to Sensitive Data Exposure — WordPress Email Marketing Plugin – WP Email Capture 5.3 Medium2023-12-21
CVE-2023-2487 WordPress WP Ultimate Exporter Plugin <= 2.4.1 is vulnerable to Sensitive Data Exposure — Export All Posts, Products, Orders, Refunds & Users 5.9 Medium2023-12-21
CVE-2023-48288 WordPress WordPress Job Board and Recruitment Plugin – JobWP Plugin <= 2.1 is vulnerable to Sensitive Data Exposure — WordPress Job Board and Recruitment Plugin – JobWP 7.5 High2023-12-21

Vulnerabilities classified as CWE-200 (信息暴露) represent 2723 CVEs. The CWE taxonomy describes the weakness; review individual CVEs for product-specific impact.