Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CWE-200 (信息暴露) — Vulnerability Class 2723

2723 vulnerabilities classified as CWE-200 (信息暴露). AI Chinese analysis included.

CVE IDTitleCVSSSeverityPublished
CVE-2022-31066 Configuration API in EdgeXFoundry exposes message bus credentials to local unauthenticated users — edgex-go 5.9 Medium2022-06-14
CVE-2022-31046 Information Disclosure via Export Module in TYPO3 CMS — typo3 4.3 Medium2022-06-14
CVE-2022-29241 Known or guessable hidden files may be accessed in Jupyter Server — jupyter_server 7.1 High2022-06-14
CVE-2022-31060 Banner topic data is exposed on login-required Discourse sites — discourse 5.3 Medium2022-06-14
CVE-2022-29244 npm packing does not respect root-level ignore files in workspaces — npm 7.5 -2022-06-13
CVE-2022-1595 HC Custom WP-Admin URL <= 1.4 - Unauthenticated Secret URL Disclosure — HC Custom WP-Admin URL 7.5 -2022-06-13
CVE-2022-32741 Information disclosure in Request New Password feature — OTRS 5.3 Medium2022-06-13
CVE-2022-32740 Information disclosure in the External Interface — OTRS 3.5 Low2022-06-13
CVE-2022-32739 OTRS version number is always in the exported ICS files — OTRS 3.5 Low2022-06-13
CVE-2017-20031 PHPList information disclosure — PHPList 2.7 Low2022-06-10
CVE-2017-20022 Solare Solar-Log information disclosure — Solar-Log 7.5 -2022-06-09
CVE-2017-20019 Solare Solar-Log Config information disclosure — Solar-Log 4.3 Medium2022-06-09
CVE-2022-31051 Exposure of Sensitive Information to an Unauthorized Actor in semantic-release — semantic-release 4.4 Medium2022-06-09
CVE-2022-31033 Authorization header leak in rubygem Mechanize — mechanize 5.9 Medium2022-06-09
CVE-2019-25069 Axios Italia Axios RE Error Message ASP.NET information disclosure — Axios RE 5.3 Medium2022-06-09
CVE-2022-31042 Failure to strip the Cookie header on change in host or HTTP downgrade in Guzzle — guzzle 7.5 High2022-06-09
CVE-2022-31043 Fix failure to strip Authorization header on HTTP downgrade in Guzzle — guzzle 7.5 High2022-06-09
CVE-2022-30556 Information Disclosure in mod_lua with websockets — Apache HTTP Server--2022-06-08
CVE-2022-30743 Samsung Account 安全漏洞 — Samsung Account 5.3 Medium2022-06-07
CVE-2022-30742 Samsung mobile 日志信息泄露漏洞 — Find My Mobile 3.3 Low2022-06-07
CVE-2022-30741 Samsung mobile 日志信息泄露漏洞 — Find My Mobile 3.3 Low2022-06-07
CVE-2022-30740 Samsung Internet 安全漏洞 — Samsung Internet 4.1 Medium2022-06-07
CVE-2022-30737 Samsung Account 安全漏洞 — Samsung Account 4.0 Medium2022-06-07
CVE-2022-30736 Samsung Account 安全漏洞 — Samsung Account 5.3 Medium2022-06-07
CVE-2022-30735 Samsung Account 安全漏洞 — Samsung Account 5.9 Medium2022-06-07
CVE-2022-30734 Samsung Account 安全漏洞 — Samsung Account 4.0 Medium2022-06-07
CVE-2022-30733 Samsung Account 日志信息泄露漏洞 — Samsung Account 4.0 Medium2022-06-07
CVE-2022-30732 Samsung Account 安全漏洞 — Samsung Account 5.5 Medium2022-06-07
CVE-2022-28224 Calico and Calico Enterprise may be vulnerable to route hijacking with the floating IP feature — Calico Enterprise 5.5 Medium2022-06-06
CVE-2020-36532 Klapp App Authorization Credentials information disclosure — App 4.3 Medium2022-06-03

Vulnerabilities classified as CWE-200 (信息暴露) represent 2723 CVEs. The CWE taxonomy describes the weakness; review individual CVEs for product-specific impact.