Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CWE-359 (侵犯隐私) — Vulnerability Class 123

123 vulnerabilities classified as CWE-359 (侵犯隐私). AI Chinese analysis included.

CVE IDTitleCVSSSeverityPublished
CVE-2025-53625 DynamicPageList3 exposes hidden/suppressed usernames — DynamicPageList3 5.3AIMediumAI2025-07-10
CVE-2025-53374 Dokploy Improperly Discloses User Information via user.one Endpoint — dokploy 4.3AIMediumAI2025-07-07
CVE-2025-6017 Rhacm: users with clusterreader role can see credentials from managed-clusters 5.5 Medium2025-07-02
CVE-2025-49715 Dynamics 365 FastTrack Implementation Assets Information Disclosure Vulnerability — Dynamics 365 FastTrack Implementation 7.5 High2025-06-20
CVE-2025-49134 Weblate exposes personal IP address via e-mail — weblate 5.3AIMediumAI2025-06-16
CVE-2025-5334 Devolutions Remote Desktop Manager 安全漏洞 — Remote Desktop Manager 6.5AIMediumAI2025-05-29
CVE-2024-13953 Sensitive Information disclosed in log files — ASPECT-Enterprise 4.9 Medium2025-05-22
CVE-2025-0679 Exposure of Private Personal Information to an Unauthorized Actor in GitLab — GitLab 4.3 Medium2025-05-22
CVE-2023-45721 HCL Domino Volt and Domino Leap are affected by a disclosure of private personal information vulnerability — HCL Domino Leap 5.3 Medium2025-04-30
CVE-2023-45720 HCL Leap is affected by a disclosure of private personal information vulnerability — HCL Leap 5.3 Medium2025-04-24
CVE-2024-42325 Excessive information returned by user.get — Zabbix 7.5AIHighAI2025-04-02
CVE-2024-10267 Information Disclosure in transformeroptimus/superagi — transformeroptimus/superagi 7.5 -2025-03-20
CVE-2024-13228 Qubely – Advanced Gutenberg Blocks <= 1.8.13 - Authenticated (Contributor+) Sensitive Information Exposure via qubely_get_content — Qubely – Advanced Gutenberg Blocks 4.3 Medium2025-03-11
CVE-2025-20060 Dario Health USB-C Blood Glucose Monitoring System Starter Kit Android Application Exposure of Private Personal Information to an Unauthorized Actor — USB-C Blood Glucose Monitoring System Starter Kit Android Applications 7.5 High2025-02-28
CVE-2024-13217 Jeg Elementor Kit <= 2.6.11 - Authenticated (Contributor+) Sensitive Information Exposure via Countdown and Off-Canvas — Jeg Kit for Elementor – Powerful Addons for Elementor, Widgets & Templates for WordPress 4.3 Medium2025-02-27
CVE-2025-20615 Qardio Heart Health IOS Mobile Application Exposure of Private Personal Information to an Unauthorized Actor — Heart Health IOS Mobile Application 6.2 Medium2025-02-13
CVE-2024-12041 Directorist – AI-Powered WordPress Business Directory Plugin with Classified Ads Listings <= 8.0.12 - Unauthenticated User Information Exposure — Directorist: AI-Powered Business Directory, Listings & Classified Ads 5.3 Medium2025-02-01
CVE-2024-13216 HT Event – WordPress Event Manager Plugin for Elementor <= 1.4.7 - Authenticated (Contributor+) Sensitive Information Exposure via HT Event: Sponsor — HT Event – WordPress Event Manager Plugin for Elementor 4.3 Medium2025-01-31
CVE-2025-0683 Exposure of Private Personal Information to an Unauthorized Actor vulnerability in Contec Health CMS8000 Patient Monitor — CMS8000 Patient Monitor 5.9 Medium2025-01-30
CVE-2025-24355 Updatecli may expose Maven credentials in console output — updatecli 6.5 -2025-01-24
CVE-2024-13215 Elementor Addon Elements <= 1.13.10 - Authenticated (Contributor+) Sensitive Information Exposure via Modal Popup — Addon Elements for Elementor (formerly Elementor Addon Elements) 4.3 Medium2025-01-15
CVE-2024-11396 Event monster <= 1.4.3 - Information Exposure Via Visitors List Export — Event Monster – Manager & Ticket Booking 5.3 Medium2025-01-13
CVE-2024-41780 IBM Jazz Foundation information disclosure — Jazz Foundation 4.2 Medium2025-01-03
CVE-2024-49765 Bypass of Discourse Connect using other login paths if enabled in Discourse — discourse 5.3 Medium2024-12-19
CVE-2024-11712 WP Job Portal <= 2.2.2 - Missing Authorization to Unauthenticated Arbitrary Resume Download — WP Job Portal – AI-Powered Recruitment System for Company or Job Board website 5.3 Medium2024-12-14
CVE-2024-42494 Ruijie Reyee OS Exposure of Private Personal Information to an Unauthorized Actor — Reyee OS 6.5 Medium2024-12-06
CVE-2024-53258 download_all_submissions allows student to download another student's submissions in Autolab — Autolab 6.5AIMediumAI2024-11-25
CVE-2024-49025 Microsoft Edge (Chromium-based) Information Disclosure Vulnerability — Microsoft Edge (Chromium-based) 5.4 Medium2024-11-14
CVE-2024-11206 Phoenix com.transsion.phoenix 安全漏洞 — com.transsion.phoenix 7.5 -2024-11-14
CVE-2023-44255 Fortinet FortiManager 安全漏洞 — FortiManager 3.9 Medium2024-11-12

Vulnerabilities classified as CWE-359 (侵犯隐私) represent 123 CVEs. The CWE taxonomy describes the weakness; review individual CVEs for product-specific impact.