CWE-5 · 2 records
J2EE Misconfiguration: Data Transmission Without Encryption
CVEs in this class
2 records
| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
30Monitor | CVE-2025-52435No exploit | Apache Mynewt NimBLE: Invalid error handling in pause encryption procedure in NimBLE controllerapache · nimble · CWE-5 | High7.5 | — | 0.2% | Jan 10, 2026 |
30Monitor | CVE-2025-65297No exploit | Aqara Hub devices including Camera Hub G3 4.1.9_0027, Hub M2 4.3.6_0027, and Hub M3 4.3.6_0025 automatically collect and upload unencrypted aqara · hub m2 firmware · CWE-5 | High7.5 | — | 0.2% | Dec 10, 2025 |
- CVE-2025-5243530Monitor
Apache Mynewt NimBLE: Invalid error handling in pause encryption procedure in NimBLE controller
HighCVSS 7.5No exploitEPSS 0%apache · nimbleJan 10, 2026
- CVE-2025-6529730Monitor
Aqara Hub devices including Camera Hub G3 4.1.9_0027, Hub M2 4.3.6_0027, and Hub M3 4.3.6_0025 automatically collect and upload unencrypted
HighCVSS 7.5No exploitEPSS 0%aqara · hub m2 firmwareDec 10, 2025