Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CWE-200 (信息暴露) — Vulnerability Class 2723

2723 vulnerabilities classified as CWE-200 (信息暴露). AI Chinese analysis included.

CVE IDTitleCVSSSeverityPublished
CVE-2022-23648 Insecure handling of image volumes in containerd CRI plugin — containerd 7.5 High2022-03-03
CVE-2021-4076 debian 安全漏洞 — tang 7.5 -2022-03-02
CVE-2022-0577 Exposure of Sensitive Information to an Unauthorized Actor in scrapy/scrapy — scrapy/scrapy 7.5 -2022-03-02
CVE-2021-3677 PostgreSQL 信息泄露漏洞 — postgresql 6.5 -2022-03-02
CVE-2021-25118 Yoast SEO 16.7-17.2 - Unauthenticated Full Path Disclosure — Yoast SEO 5.3 -2022-02-28
CVE-2022-0654 Exposure of Sensitive Information to an Unauthorized Actor in fgribreau/node-request-retry — fgribreau/node-request-retry 7.5 -2022-02-22
CVE-2022-23984 WordPress wpDiscuz plugin <= 7.3.11 - Sensitive Information Disclosure — Comments – wpDiscuz (WordPress plugin) 3.7 Low2022-02-21
CVE-2022-0708 Team Creator's Email Address is disclosed to Team Members via one of the APIs — Mattermost 4.3 Medium2022-02-21
CVE-2021-44141 samba 后置链接漏洞 — Samba 4.3 -2022-02-21
CVE-2021-20320 Linux kernel 安全漏洞 — kernel 5.5 -2022-02-18
CVE-2022-0672 Red Hat Vscode-Xml 信息泄露漏洞 — LemMinX 5.0 -2022-02-18
CVE-2022-23982 WordPress Perfect Brands for WooCommerce plugin <= 2.0.4 - Server Information Exposure vulnerability — Perfect Brands for WooCommerce (WordPress plugin) 4.3 Medium2022-02-18
CVE-2021-3773 netfilter 信息泄露漏洞 — kernel 9.8 -2022-02-16
CVE-2022-23643 Side-channel attack in Sourcegraph Code Monitors — sourcegraph 6.5 Medium2022-02-15
CVE-2021-25110 Futurio Extra < 1.6.3 - Subscriber+ User Email Address Disclosure — Futurio Extra 4.3 -2022-02-14
CVE-2022-23634 Information Exposure when using Puma with Rails — puma 8.0 High2022-02-11
CVE-2021-22785 Schneider Electric 多款产品信息泄露漏洞 — Modicon M340 CPUs: BMXP34 (Versions prior to V3.40), Modicon M340 X80 Ethernet Communication Modules: BMXNOE0100 (H), BMXNOE0110 (H), BMXNOC0401, BMXNOR0200H RTU (All Versions), Modicon Premium Processors with integrated Ethernet (Copro): TSXP574634, TSXP575634, TSXP576634 (All Versions), Modicon Quantum Processors with Integrated Ethernet (Copro): 140CPU65xxxxx (All Versions), Modicon Quantum Communication Modules: 140NOE771x1, 140NOC78x00, 140NOC77101 (All Versions), Modicon Premium Communication Modules: TSXETY4103, TSXETY5103 (All Versions) 7.5 -2022-02-11
CVE-2022-24003 Samsung Bixby Vision 信息泄露漏洞 — Bixby Vision 4.0 Medium2022-02-11
CVE-2022-24001 Google Android 信息泄露漏洞 — Samsung Mobile Devices 3.8 Low2022-02-11
CVE-2022-23633 Exposure of sensitive information in Action Pack — rails 7.4 High2022-02-11
CVE-2022-20680 Cisco Prime Service Catalog Information Disclosure Vulnerability — Cisco Prime Service Catalog 4.3 Medium2022-02-10
CVE-2022-20630 Cisco DNA Center Information Disclosure Vulnerability — Cisco Digital Network Architecture Center (DNA Center) 4.4 Medium2022-02-10
CVE-2022-22545 SAP NetWeaver Application Server 信息泄露漏洞 — SAP NetWeaver Application Server ABAP and ABAP Platform 4.9 -2022-02-09
CVE-2022-22542 Sap Crm Web Channel 信息泄露漏洞 — SAP S/4HANA (Supplier Factsheet and Enterprise Search for Business Partner, Supplier and Customer) 6.5 -2022-02-09
CVE-2022-23619 Information exposure in xwiki-platform — xwiki-platform 5.3 Medium2022-02-09
CVE-2021-40360 Siemens SIMATIC 信息泄露漏洞 — SIMATIC PCS 7 V8.2 7.8 -2022-02-09
CVE-2022-0474 Disclosure of mail addresses — OTRSCustomContactFields 2.4 Low2022-02-07
CVE-2022-22680 Synology DiskStation Manager 信息泄露漏洞 — DiskStation Manager (DSM) 5.3 Medium2022-02-07
CVE-2022-21712 Cookie and header exposure in twisted — twisted 7.5 High2022-02-07
CVE-2022-23607 Unsafe handling of user-specified cookies in treq — treq 6.5 Medium2022-02-01

Vulnerabilities classified as CWE-200 (信息暴露) represent 2723 CVEs. The CWE taxonomy describes the weakness; review individual CVEs for product-specific impact.