Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CWE-200 (信息暴露) — Vulnerability Class 2723

2723 vulnerabilities classified as CWE-200 (信息暴露). AI Chinese analysis included.

CVE IDTitleCVSSSeverityPublished
CVE-2023-38503 Directus has Incorrect Permission Checking for GraphQL Subscriptions — directus 5.7 Medium2023-07-25
CVE-2023-38499 typo3/cms-core Information Disclosure due to Out-of-scope Site Resolution — typo3 3.7 Low2023-07-25
CVE-2023-34235 Leaking sensitive user information still possible by filtering on private with prefix fields — strapi 8.6 High2023-07-25
CVE-2023-34093 Strapi allows actors to make all attributes on a content-type public without noticing it — strapi 4.8 Medium2023-07-25
CVE-2023-37916 Leak password hash of any user — KubePi 6.5 Medium2023-07-21
CVE-2023-3819 Exposure of Sensitive Information to an Unauthorized Actor in pimcore/pimcore — pimcore/pimcore 7.5 -2023-07-21
CVE-2023-32476 Dell Hybrid Client 信息泄露漏洞 — Dell Hybrid Client (DHC) 6.4 Medium2023-07-20
CVE-2023-3779 Essential Addons For Elementor <=5.8.1 - Unauthenticated MailChimp API Key Disclosure — Essential Addons for Elementor – Popular Elementor Templates & Widgets 5.3 Medium2023-07-20
CVE-2023-26026 IBM Planning Analytics Cartridge for Cloud Pak for Data information disclosure — Planning Analytics Cartridge for Cloud Pak for Data 5.3 Medium2023-07-19
CVE-2023-27877 IBM Planning Analytics Cartridge for Cloud Pak for Data information disclosure — Planning Analytics Cartridge for Cloud Pak for Data 5.3 Medium2023-07-19
CVE-2023-35900 IBM Robotic Process Automation information disclosure — Robotic Process Automation 4.3 Medium2023-07-19
CVE-2023-35898 IBM InfoSphere Information Server information disclosure — InfoSphere Information Server 4.3 Medium2023-07-19
CVE-2021-4428 what3words Autosuggest Plugin Setting class-w3w-autosuggest-public.php enqueue_scripts information disclosure — Autosuggest Plugin 2.7 Low2023-07-18
CVE-2023-3709 Royal Elementor Addons <=1.3.70 - Unauthenticated MailChimp API Key Disclosure — Royal Addons for Elementor – Addons and Templates Kit for Elementor 5.3 Medium2023-07-18
CVE-2023-33857 IBM InfoSphere Information Server information disclosure — InfoSphere Information Server 5.3 Medium2023-07-16
CVE-2023-34236 Information Disclosure Vulnerability in Weave GitOps Terraform Controller — tf-controller 8.5 High2023-07-14
CVE-2023-29450 Unauthorized limited filesystem access from preprocessing — Zabbix 8.5 High2023-07-13
CVE-2023-34134 SonicWALL Analytics和GMS 安全漏洞 — GMS 6.5 -2023-07-13
CVE-2023-34131 SonicWALL Analytics和GMS 安全漏洞 — GMS 5.3 -2023-07-13
CVE-2023-38062 JetBrains TeamCity 信息泄露漏洞 — TeamCity 4.3 Medium2023-07-12
CVE-2022-46651 Apache Airflow: Security vulnerability on AirFlow Connections — Apache Airflow 6.5 -2023-07-12
CVE-2023-34090 Decidim vulnerable to sensitive data disclosure — decidim 7.5 High2023-07-11
CVE-2023-33174 Windows Cryptographic Information Disclosure Vulnerability — Windows 10 Version 1809 5.5 Medium2023-07-11
CVE-2023-33165 Microsoft SharePoint Server Security Feature Bypass Vulnerability — Microsoft SharePoint Server 2019 4.3 Medium2023-07-11
CVE-2023-24881 Microsoft Teams Information Disclosure Vulnerability — Microsoft Teams 6.5 Medium2023-07-11
CVE-2023-34442 Apache Camel JIRA: Temporary file information disclosure in Camel-Jira — Apache Camel JIRA 7.5 -2023-07-10
CVE-2023-3553 Exposure of Sensitive Information to an Unauthorized Actor in nilsteampassnet/teampass — nilsteampassnet/teampass 7.5 -2023-07-08
CVE-2023-35934 yt-dlp File Downloader cookie leak — yt-dlp 6.1 Medium2023-07-06
CVE-2022-48520 Huawei HarmonyOS 安全漏洞 — HarmonyOS 7.5 -2023-07-06
CVE-2022-48519 Huawei HarmonyOS 安全漏洞 — HarmonyOS 7.5 -2023-07-06

Vulnerabilities classified as CWE-200 (信息暴露) represent 2723 CVEs. The CWE taxonomy describes the weakness; review individual CVEs for product-specific impact.