Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CWE-200 (信息暴露) — Vulnerability Class 2723

2723 vulnerabilities classified as CWE-200 (信息暴露). AI Chinese analysis included.

CVE IDTitleCVSSSeverityPublished
CVE-2023-40002 WordPress Booster for WooCommerce Plugin <= 7.1.1 is vulnerable to Sensitive Data Exposure — Booster for WooCommerce 6.5 Medium2023-11-22
CVE-2023-23978 WordPress WP Client Reports Plugin <= 1.0.16 is vulnerable to Sensitive Data Exposure — WP Client Reports 4.3 Medium2023-11-22
CVE-2022-36777 IBM Cloud Pak for Security information disclosure — Cloud Pak for Security 4.3 Medium2023-11-22
CVE-2023-2446 UserPro <= 5.1.1 - Sensitive Information Disclosure via Shortcode — UserPro - Community and User Profile WordPress Plugin 6.5 Medium2023-11-22
CVE-2021-22143 Elastic APM .NET Agent information disclosure — Elastic APM .NET Agent 2.1 Low2023-11-22
CVE-2023-47643 SuiteCRM has Unauthenticated Graphql Introspection Enabled — SuiteCRM-Core 3.1 Low2023-11-21
CVE-2023-48294 Broken Access control on Graphs Feature in LibreNMS — librenms 4.3 Medium2023-11-17
CVE-2023-47642 Stream description leaks to ex-subscribers in Zulip — zulip 4.3 Medium2023-11-16
CVE-2023-6105 ManageEngine Information Disclosure in Multiple Products — Service Desk Plus 5.5 Medium2023-11-15
CVE-2023-47126 Information Disclosure in Install Tool in typo3/cms-install — typo3 3.7 Low2023-11-14
CVE-2023-41676 Fortinet FortiSIEM 安全漏洞 — FortiSIEM 4.2 Medium2023-11-14
CVE-2023-36043 Open Management Infrastructure Information Disclosure Vulnerability — System Center Operations Manager (SCOM) 2022 6.5 Medium2023-11-14
CVE-2023-47117 Object Relational Mapper Leak Vulnerability in Filtering Task in Label Studio — label-studio 7.5 High2023-11-13
CVE-2023-6101 Maiwei Safety Production Control Platform Intelligent Monitoring ha.html information disclosure — Safety Production Control Platform 5.3 Medium2023-11-13
CVE-2023-6100 Maiwei Safety Production Control Platform GetItemList information disclosure — Safety Production Control Platform 5.3 Medium2023-11-13
CVE-2023-42781 Apache Airflow: Permission verification bypass allows viewing dagruns of other dags — Apache Airflow 4.3 -2023-11-12
CVE-2023-47614 Telit多款产品安全漏洞 — BGS5 3.3 Low2023-11-10
CVE-2023-6076 PHPGurukul Restaurant Table Booking System Reservation Status booking-details.php information disclosure — Restaurant Table Booking System 5.3 Medium2023-11-10
CVE-2023-45816 Unread bookmark reminder notifications that the user cannot access can be seen — discourse 3.3 Low2023-11-10
CVE-2018-8863 Philips EncoreAnywhere Exposure of Sensitive Information to an Unauthorized Actor — EncoreAnywhere 5.9 Medium2023-11-09
CVE-2023-5551 Moodle: forum summary report shows students from other groups when in separate groups mode 3.3 Low2023-11-09
CVE-2023-5545 Moodle: auto-populated h5p author name causes a potential information leak 3.3 Low2023-11-09
CVE-2023-43791 Label Studio has Hardcoded Django `SECRET_KEY` that can be Abused to Forge Session Tokens — label-studio 9.8 Critical2023-11-09
CVE-2023-47616 Telit Cinterion BGS5 安全漏洞 — BGS5 2.4 Low2023-11-09
CVE-2023-46757 Huawei HarmonyOS 信息泄露漏洞 — HarmonyOS 7.5 -2023-11-08
CVE-2023-44098 Huawei HarmonyOS 信息泄露漏洞 — HarmonyOS 7.5 -2023-11-08
CVE-2023-44115 Huawei HarmonyOS 信息泄露漏洞 — HarmonyOS 6.5 -2023-11-08
CVE-2023-4061 Wildfly-core: management user rbac permission allows unexpected reading of system-properties to an unauthorized actor — Red Hat JBoss Enterprise Application Platform 7 6.5 Medium2023-11-08
CVE-2023-6001 Prometheus Metrics Accessible Pre-Authentication — YugabyteDB Anywhere 5.3 Medium2023-11-07
CVE-2023-46254 Service accounts can see namespaces of other tenants in capsule-proxy — capsule-proxy 4.3 Medium2023-11-06

Vulnerabilities classified as CWE-200 (信息暴露) represent 2723 CVEs. The CWE taxonomy describes the weakness; review individual CVEs for product-specific impact.