CWE-540 · 29 записей
Inclusion of Sensitive Information in Source Code
CVE этого класса
29 записей
| Срочность | CVE | Уязвимость | Критичность | KEV | EPSS | Опубликовано |
|---|---|---|---|---|---|---|
39Наблюдать | CVE-2025-49182Эксплойта нет | Credential disclosuresick · media server · CWE-540 | Критическая9,8 | — | 0,6 % | 12 июн. 2025 г. |
39Наблюдать | CVE-2026-84390Эксплойта нет | A inclusion of sensitive information in source code vulnerability in Fortinet FortiMonitorOnSight 7.2.4 through 7.2.7, FortiMonitorOnSight 7fortinet · fortimonitoronsight · CWE-540 | Критическая9,8 | — | 0,5 % | 11 сент. 2026 г. |
39Наблюдать | CVE-2024-38327Эксплойта нет | IBM Analytics Content Hub information disclosureibm · analytics content hub · CWE-540 | Критическая9,8 | — | 0,3 % | 10 июл. 2025 г. |
32Наблюдать | CVE-2025-26013Эксплойта нет | An issue in Loggrove v.1.0 allows a remote attacker to obtain sensitive information via the read.py component.olajowon · loggrove · CWE-540 | Высокая8,2 | — | 0,4 % | 21 февр. 2025 г. |
30Наблюдать | CVE-2024-2265Эксплойта нет | keerti1924 PHP-MYSQL-User-Login-System login.sql inclusion of sensitive information in source codekeerti1924 · php mysql user signup login system · CWE-540 | Высокая7,5 | — | 0,8 % | 7 мар. 2024 г. |
30Наблюдать | CVE-2026-4155Эксплойта нет | ChargePoint Home Flex Inclusion of Sensitive Information in Source Code Information Disclosure Vulnerabilitychargepoint · home flex cph50 firmware · CWE-540 | Высокая7,5 | — | 0,7 % | 10 апр. 2026 г. |
30Наблюдать | CVE-2024-1272Эксплойта нет | Information Disclosure to Source Code in TNB Mobile Solutions' Cockpit Softwaretnbmobil · cockpit · CWE-540 | Высокая7,5 | — | 0,4 % | 5 июн. 2024 г. |
30Наблюдать | CVE-2026-73591Эксплойта нет | Dell Secure Connect Gateway (SCG) Policy Manager, versions prior to 5.34.00.16, contains an Inclusion of Sensitive Information in Source Coddell · policy manager for secure connect gateway · CWE-540 | Высокая7,5 | — | 0,3 % | 23 сент. 2026 г. |
27Наблюдать | CVE-2026-35383Эксплойта нет | Bentley Systems iTwin Platform exposed access tokenbentley systems · itwin platform · CWE-540 | Средняя6,9 | — | 0,5 % | 2 апр. 2026 г. |
27Наблюдать | CVE-2026-16581Эксплойта нет | Inclusion of sensitive information in source code in igloohome Smart Lock Mobile Applicationigloohome · smart lock mobile application · CWE-540 | Средняя6,9 | — | 0,4 % | 28 июл. 2026 г. |
26Наблюдать | CVE-2021-1516Эксплойта нет | Cisco Content Security Management Appliance, Email Security Appliance, and Web Security Appliance Information Disclosure Vulnerabilitycisco · content security management appliance · CWE-540 | Средняя6,5 | — | 1,0 % | 6 мая 2021 г. |
22Наблюдать | CVE-2021-34757Эксплойта нет | Cisco Business 220 Series Smart Switches Static Key and Password Vulnerabilitiescisco · business 220-8t-e-2g firmware · CWE-540 | Средняя5,5 | — | 0,6 % | 6 окт. 2021 г. |
22Наблюдать | CVE-2021-28805Эксплойта нет | Inclusion of Sensitive Information in QSSqnap · qss · CWE-540 | Средняя5,5 | — | 0,2 % | 11 июн. 2021 г. |
22Наблюдать | CVE-2023-39250Эксплойта нет | Dell Storage Integration Tools for VMware (DSITV) and Dell Storage vSphere Client Plugin (DSVCP) versions prior to 6.1.1 and Replay Managdell · replay manager for vmware · CWE-540 | Средняя5,5 | — | 0,1 % | 16 авг. 2023 г. |
21Наблюдать | CVE-2023-23448Эксплойта нет | Inclusion of Sensitive Information in Source Code in SICK FTMg AIR FLOW SENSOR with Partnumbers 1100214, 1100215, 1100216, 1120114, 1120116,sick · ftmg-esd20axx firmware · CWE-540 | Средняя5,3 | — | 0,8 % | 15 мая 2023 г. |
21Наблюдать | CVE-2023-30802Эксплойта нет | Sangfor Next-Gen Application Firewall Source Code Disclosuresangfor · next-gen application firewall · CWE-540 | Средняя5,3 | — | 0,6 % | 10 окт. 2023 г. |
21Наблюдать | CVE-2024-9596Эксплойта нет | Inclusion of Sensitive Information in Source Code in GitLabgitlab · gitlab · CWE-540 | Средняя5,3 | — | 0,3 % | 10 окт. 2024 г. |
21Наблюдать | CVE-2024-35144Эксплойта нет | IBM Maximo Application Suite information disclosureibm · maximo application suite · CWE-540 | Средняя5,3 | — | 0,3 % | 25 янв. 2025 г. |
21Наблюдать | CVE-2025-0923Эксплойта нет | IBM Cognos Analytics information disclosureibm · cognos analytics · CWE-540 | Средняя5,3 | — | 0,3 % | 11 июн. 2025 г. |
21Наблюдать | CVE-2024-55907Эксплойта нет | IBM Cognos Mobile information disclosureibm · cognos analytics mobile · CWE-540 | Средняя5,3 | — | 0,3 % | 2 мар. 2025 г. |
19Наблюдать | CVE-2021-34744Эксплойта нет | Cisco Business 220 Series Smart Switches Static Key and Password Vulnerabilitiescisco · business 220-8t-e-2g firmware · CWE-540 | Средняя4,9 | — | 0,7 % | 6 окт. 2021 г. |
17Наблюдать | CVE-2024-39729Эксплойта нет | IBM Datacap Navigator information disclosureibm · datacap · CWE-540 | Средняя4,3 | — | 0,4 % | 14 июл. 2024 г. |
17Наблюдать | CVE-2024-27257Эксплойта нет | IBM OpenPages information disclosureibm · openpages grc platform · CWE-540 | Средняя4,3 | — | 0,3 % | 10 сент. 2024 г. |
17Наблюдать | CVE-2025-36076Эксплойта нет | IBM Cognos Analytics versions 12.0.4 and 12.1.3 is affected by security vulnerabilitiesibm · cognos analytics · CWE-540 | Средняя4,3 | — | 0,2 % | 18 сент. 2026 г. |
17Наблюдать | CVE-2025-36299Эксплойта нет | IBM Planning Analytics Information Disclosureibm · planning analytics local · CWE-540 | Средняя4,3 | — | 0,2 % | 17 нояб. 2025 г. |
- CVE-2025-4918239Наблюдать
Credential disclosure
КритическаяCVSS 9,8Эксплойта нетEPSS 1 %sick · media server12 июн. 2025 г.
- CVE-2026-8439039Наблюдать
A inclusion of sensitive information in source code vulnerability in Fortinet FortiMonitorOnSight 7.2.4 through 7.2.7, FortiMonitorOnSight 7
КритическаяCVSS 9,8Эксплойта нетEPSS 1 %fortinet · fortimonitoronsight11 сент. 2026 г.
- CVE-2024-3832739Наблюдать
IBM Analytics Content Hub information disclosure
КритическаяCVSS 9,8Эксплойта нетEPSS 0 %ibm · analytics content hub10 июл. 2025 г.
- CVE-2025-2601332Наблюдать
An issue in Loggrove v.1.0 allows a remote attacker to obtain sensitive information via the read.py component.
ВысокаяCVSS 8,2Эксплойта нетEPSS 0 %olajowon · loggrove21 февр. 2025 г.
- CVE-2024-226530Наблюдать
keerti1924 PHP-MYSQL-User-Login-System login.sql inclusion of sensitive information in source code
ВысокаяCVSS 7,5Эксплойта нетEPSS 1 %keerti1924 · php mysql user signup login system7 мар. 2024 г.
- CVE-2026-415530Наблюдать
ChargePoint Home Flex Inclusion of Sensitive Information in Source Code Information Disclosure Vulnerability
ВысокаяCVSS 7,5Эксплойта нетEPSS 1 %chargepoint · home flex cph50 firmware10 апр. 2026 г.
- CVE-2024-127230Наблюдать
Information Disclosure to Source Code in TNB Mobile Solutions' Cockpit Software
ВысокаяCVSS 7,5Эксплойта нетEPSS 0 %tnbmobil · cockpit5 июн. 2024 г.
- CVE-2026-7359130Наблюдать
Dell Secure Connect Gateway (SCG) Policy Manager, versions prior to 5.34.00.16, contains an Inclusion of Sensitive Information in Source Cod
ВысокаяCVSS 7,5Эксплойта нетEPSS 0 %dell · policy manager for secure connect gateway23 сент. 2026 г.
- CVE-2026-3538327Наблюдать
Bentley Systems iTwin Platform exposed access token
СредняяCVSS 6,9Эксплойта нетEPSS 0 %bentley systems · itwin platform2 апр. 2026 г.
- CVE-2026-1658127Наблюдать
Inclusion of sensitive information in source code in igloohome Smart Lock Mobile Application
СредняяCVSS 6,9Эксплойта нетEPSS 0 %igloohome · smart lock mobile application28 июл. 2026 г.
- CVE-2021-151626Наблюдать
Cisco Content Security Management Appliance, Email Security Appliance, and Web Security Appliance Information Disclosure Vulnerability
СредняяCVSS 6,5Эксплойта нетEPSS 1 %cisco · content security management appliance6 мая 2021 г.
- CVE-2021-3475722Наблюдать
Cisco Business 220 Series Smart Switches Static Key and Password Vulnerabilities
СредняяCVSS 5,5Эксплойта нетEPSS 1 %cisco · business 220-8t-e-2g firmware6 окт. 2021 г.
- CVE-2021-2880522Наблюдать
Inclusion of Sensitive Information in QSS
СредняяCVSS 5,5Эксплойта нетEPSS 0 %qnap · qss11 июн. 2021 г.
- CVE-2023-3925022Наблюдать
Dell Storage Integration Tools for VMware (DSITV) and Dell Storage vSphere Client Plugin (DSVCP) versions prior to 6.1.1 and Replay Manag
СредняяCVSS 5,5Эксплойта нетEPSS 0 %dell · replay manager for vmware16 авг. 2023 г.
- CVE-2023-2344821Наблюдать
Inclusion of Sensitive Information in Source Code in SICK FTMg AIR FLOW SENSOR with Partnumbers 1100214, 1100215, 1100216, 1120114, 1120116,
СредняяCVSS 5,3Эксплойта нетEPSS 1 %sick · ftmg-esd20axx firmware15 мая 2023 г.
- CVE-2023-3080221Наблюдать
Sangfor Next-Gen Application Firewall Source Code Disclosure
СредняяCVSS 5,3Эксплойта нетEPSS 1 %sangfor · next-gen application firewall10 окт. 2023 г.
- CVE-2024-959621Наблюдать
Inclusion of Sensitive Information in Source Code in GitLab
СредняяCVSS 5,3Эксплойта нетEPSS 0 %gitlab · gitlab10 окт. 2024 г.
- CVE-2024-3514421Наблюдать
IBM Maximo Application Suite information disclosure
СредняяCVSS 5,3Эксплойта нетEPSS 0 %ibm · maximo application suite25 янв. 2025 г.
- CVE-2025-092321Наблюдать
IBM Cognos Analytics information disclosure
СредняяCVSS 5,3Эксплойта нетEPSS 0 %ibm · cognos analytics11 июн. 2025 г.
- CVE-2024-5590721Наблюдать
IBM Cognos Mobile information disclosure
СредняяCVSS 5,3Эксплойта нетEPSS 0 %ibm · cognos analytics mobile2 мар. 2025 г.
- CVE-2021-3474419Наблюдать
Cisco Business 220 Series Smart Switches Static Key and Password Vulnerabilities
СредняяCVSS 4,9Эксплойта нетEPSS 1 %cisco · business 220-8t-e-2g firmware6 окт. 2021 г.
- CVE-2024-3972917Наблюдать
IBM Datacap Navigator information disclosure
СредняяCVSS 4,3Эксплойта нетEPSS 0 %ibm · datacap14 июл. 2024 г.
- CVE-2024-2725717Наблюдать
IBM OpenPages information disclosure
СредняяCVSS 4,3Эксплойта нетEPSS 0 %ibm · openpages grc platform10 сент. 2024 г.
- CVE-2025-3607617Наблюдать
IBM Cognos Analytics versions 12.0.4 and 12.1.3 is affected by security vulnerabilities
СредняяCVSS 4,3Эксплойта нетEPSS 0 %ibm · cognos analytics18 сент. 2026 г.
- CVE-2025-3629917Наблюдать
IBM Planning Analytics Information Disclosure
СредняяCVSS 4,3Эксплойта нетEPSS 0 %ibm · planning analytics local17 нояб. 2025 г.