CWE-779 · 19 records
Logging of Excessive Data
CVEs in this class
19 records
| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
39Monitor | CVE-2024-36072No exploit | Netwrix CoSoSys Endpoint Protector through 5.9.3 and CoSoSys Unify through 7.0.6 contain a remote code execution vulnerability in the logginCWE-779 | Critical9.8 | — | 1.0% | Jun 27, 2024 |
31Monitor | CVE-2024-36416Proof of concept | SuiteCRM v4 API Excessive log data DOSsalesagility · suitecrm · CWE-779 | High7.5 | — | 2.0% | Jun 10, 2024 |
30Monitor | CVE-2022-31004No exploit | Potential secrets being logged to disk in CVE Servicesmitre · cve-services · CWE-779 | High7.5 | — | 1.0% | Jun 2, 2022 |
30Monitor | CVE-2026-28718No exploit | Denial of service due to insufficient input validation in authentication logging.acronis · cyber protect · CWE-779 | High7.5 | — | 0.6% | Mar 5, 2026 |
30Monitor | CVE-2024-13925No exploit | Klarna Checkout for WooCommerce < 2.13.5 - DoS via Excessive Loggingklarna · klarna checkout for woocommerce · CWE-779 | High7.5 | — | 0.5% | Apr 17, 2025 |
30Monitor | CVE-2025-8696No exploit | DoS attack against the Stork UI from an unauthenticated userisc · stork · CWE-779 | High7.5 | — | 0.4% | Sep 10, 2025 |
27Monitor | CVE-2026-86200No exploit | PocketMine-MP before 5.42.1 LogDoS via LoginPacket clientData JWTpmmp · pocketmine-mp · CWE-779 | Medium6.9 | — | 0.6% | Sep 9, 2026 |
22Monitor | CVE-2021-25421No exploit | Improper log management vulnerability in Galaxy Watch3 PlugIn prior to version 2.2.09.21033151 allows attacker with log permissions to leak samsung · galaxy watch 3 plugin · CWE-779 | Medium5.5 | — | 0.2% | Jun 11, 2021 |
22Monitor | CVE-2021-25423No exploit | Improper log management vulnerability in Watch Active2 PlugIn prior to 2.2.08.21033151 version allows attacker with log permissions to leak samsung · watch active2 plugin · CWE-779 | Medium5.5 | — | 0.2% | Jun 11, 2021 |
22Monitor | CVE-2021-25422No exploit | Improper log management vulnerability in Watch Active PlugIn prior to version 2.2.07.21033151 allows attacker with log permissions to leak Wsamsung · watch active plugin · CWE-779 | Medium5.5 | — | 0.2% | Jun 11, 2021 |
22Monitor | CVE-2021-25420No exploit | Improper log management vulnerability in Galaxy Watch PlugIn prior to version 2.2.05.21033151 allows attacker with log permissions to leak Wsamsung · galaxy watch plugin · CWE-779 | Medium5.5 | — | 0.2% | Jun 11, 2021 |
22Monitor | CVE-2024-1141No exploit | Glance-store: glance store access key logged in debug log levelopenstack · glance-store · CWE-779 | Medium5.5 | — | 0.2% | Feb 1, 2024 |
22Monitor | CVE-2022-39874No exploit | Sensitive log information leakage vulnerability in Samsung Account prior to version 13.5.0 allows attackers to unauthorized logout.samsung · account · CWE-779 | Medium5.5 | — | 0.2% | Oct 7, 2022 |
22Monitor | CVE-2022-22291No exploit | Logging of excessive data vulnerability in telephony prior to SMR Feb-2022 Release 1 allows privileged attackers to get Cell Location Informgoogle · android · CWE-779 | Medium5.5 | — | 0.1% | Feb 11, 2022 |
21Monitor | CVE-2025-51397Proof of concept | A stored cross-site scripting (XSS) vulnerability in the Facebook Chat module of Live Helper Chat v4.60 allows attackers to execute arbitrarlivehelperchat · live helper chat · CWE-779 | Medium5.4 | — | 0.9% | Jul 21, 2025 |
21Monitor | CVE-2026-20209No exploit | Cisco Catalyst SD-WAN Manager Privilege Escalation Vulnerabilitycisco · catalyst sd-wan manager · CWE-779 | Medium5.4 | — | 0.2% | May 14, 2026 |
21Monitor | CVE-2026-20210No exploit | Cisco Catalyst SD-WAN Manager Privilege Escalation Vulnerabilitycisco · catalyst sd-wan manager · CWE-779 | Medium5.4 | — | 0.2% | May 14, 2026 |
17Monitor | CVE-2022-25779No exploit | Insufficient scope checks allows adding unrelated audit log entriessecomea · gatemanager 4250 firmware · CWE-779 | Medium4.3 | — | 0.6% | May 4, 2022 |
10Monitor | CVE-2025-69230No exploit | AIOHTTP Vulnerable to Cookie Parser Warning Stormaiohttp · aiohttp · CWE-779 | Low2.7 | — | 0.4% | Jan 5, 2026 |
- CVE-2024-3607239Monitor
Netwrix CoSoSys Endpoint Protector through 5.9.3 and CoSoSys Unify through 7.0.6 contain a remote code execution vulnerability in the loggin
CriticalCVSS 9.8No exploitEPSS 1%Jun 27, 2024
- CVE-2024-3641631Monitor
SuiteCRM v4 API Excessive log data DOS
HighCVSS 7.5Proof of conceptEPSS 2%salesagility · suitecrmJun 10, 2024
- CVE-2022-3100430Monitor
Potential secrets being logged to disk in CVE Services
HighCVSS 7.5No exploitEPSS 1%mitre · cve-servicesJun 2, 2022
- CVE-2026-2871830Monitor
Denial of service due to insufficient input validation in authentication logging.
HighCVSS 7.5No exploitEPSS 1%acronis · cyber protectMar 5, 2026
- CVE-2024-1392530Monitor
Klarna Checkout for WooCommerce < 2.13.5 - DoS via Excessive Logging
HighCVSS 7.5No exploitEPSS 1%klarna · klarna checkout for woocommerceApr 17, 2025
- CVE-2025-869630Monitor
DoS attack against the Stork UI from an unauthenticated user
HighCVSS 7.5No exploitEPSS 0%isc · storkSep 10, 2025
- CVE-2026-8620027Monitor
PocketMine-MP before 5.42.1 LogDoS via LoginPacket clientData JWT
MediumCVSS 6.9No exploitEPSS 1%pmmp · pocketmine-mpSep 9, 2026
- CVE-2021-2542122Monitor
Improper log management vulnerability in Galaxy Watch3 PlugIn prior to version 2.2.09.21033151 allows attacker with log permissions to leak
MediumCVSS 5.5No exploitEPSS 0%samsung · galaxy watch 3 pluginJun 11, 2021
- CVE-2021-2542322Monitor
Improper log management vulnerability in Watch Active2 PlugIn prior to 2.2.08.21033151 version allows attacker with log permissions to leak
MediumCVSS 5.5No exploitEPSS 0%samsung · watch active2 pluginJun 11, 2021
- CVE-2021-2542222Monitor
Improper log management vulnerability in Watch Active PlugIn prior to version 2.2.07.21033151 allows attacker with log permissions to leak W
MediumCVSS 5.5No exploitEPSS 0%samsung · watch active pluginJun 11, 2021
- CVE-2021-2542022Monitor
Improper log management vulnerability in Galaxy Watch PlugIn prior to version 2.2.05.21033151 allows attacker with log permissions to leak W
MediumCVSS 5.5No exploitEPSS 0%samsung · galaxy watch pluginJun 11, 2021
- CVE-2024-114122Monitor
Glance-store: glance store access key logged in debug log level
MediumCVSS 5.5No exploitEPSS 0%openstack · glance-storeFeb 1, 2024
- CVE-2022-3987422Monitor
Sensitive log information leakage vulnerability in Samsung Account prior to version 13.5.0 allows attackers to unauthorized logout.
MediumCVSS 5.5No exploitEPSS 0%samsung · accountOct 7, 2022
- CVE-2022-2229122Monitor
Logging of excessive data vulnerability in telephony prior to SMR Feb-2022 Release 1 allows privileged attackers to get Cell Location Inform
MediumCVSS 5.5No exploitEPSS 0%google · androidFeb 11, 2022
- CVE-2025-5139721Monitor
A stored cross-site scripting (XSS) vulnerability in the Facebook Chat module of Live Helper Chat v4.60 allows attackers to execute arbitrar
MediumCVSS 5.4Proof of conceptEPSS 1%livehelperchat · live helper chatJul 21, 2025
- CVE-2026-2020921Monitor
Cisco Catalyst SD-WAN Manager Privilege Escalation Vulnerability
MediumCVSS 5.4No exploitEPSS 0%cisco · catalyst sd-wan managerMay 14, 2026
- CVE-2026-2021021Monitor
Cisco Catalyst SD-WAN Manager Privilege Escalation Vulnerability
MediumCVSS 5.4No exploitEPSS 0%cisco · catalyst sd-wan managerMay 14, 2026
- CVE-2022-2577917Monitor
Insufficient scope checks allows adding unrelated audit log entries
MediumCVSS 4.3No exploitEPSS 1%secomea · gatemanager 4250 firmwareMay 4, 2022
- CVE-2025-6923010Monitor
AIOHTTP Vulnerable to Cookie Parser Warning Storm
LowCVSS 2.7No exploitEPSS 0%aiohttp · aiohttpJan 5, 2026