CWE-215 · 21 записей
Insertion of Sensitive Information Into Debugging Code
CVE этого класса
21 записей
| Срочность | CVE | Уязвимость | Критичность | KEV | EPSS | Опубликовано |
|---|---|---|---|---|---|---|
40В плане | CVE-2024-7569Эксплойта нет | An information disclosure vulnerability in Ivanti ITSM on-prem and Neurons for ITSM versions 2023.4 and earlier allows an unauthenticated ativanti · neurons for itsm · CWE-215 | Критическая9,8 | — | 1,7 % | 13 авг. 2024 г. |
36Наблюдать | CVE-2026-74799Эксплойта нет | SiYuan before 3.7.4 Unauthenticated Debug Endpoint Information Disclosuresiyuan-note · siyuan · CWE-215 | Критическая9,2 | — | 0,5 % | 17 авг. 2026 г. |
35Наблюдать | CVE-2019-3781Эксплойта нет | CF CLI does not sanitize user's password in verbose/trace/debugcloudfoundry · command line interface · CWE-215 | Высокая8,8 | — | 1,3 % | 7 мар. 2019 г. |
35Наблюдать | CVE-2018-1191Эксплойта нет | Cloud Foundry Garden-runC, versions prior to 1.11.0, contains an information exposure vulnerability.cloudfoundry · cf-deployment · CWE-215 | Высокая8,8 | — | 0,9 % | 29 мар. 2018 г. |
30Наблюдать | CVE-2025-27684Эксплойта нет | Vasion Print (formerly PrinterLogic) before Virtual Appliance Host 1.0.735 Application 20.0.1330 allows Debug Bundle Contains Sensitive Dataprinterlogic · vasion print · CWE-215 | Высокая7,5 | — | 0,6 % | 5 мар. 2025 г. |
30Наблюдать | CVE-2026-2250Эксплойта нет | Unauthenticated Data Export and Source Code Disclosure via /dbviewer/ in METIS WICmetis cyberspace technology sa · metis wic · CWE-215 | Высокая7,5 | — | 0,4 % | 11 февр. 2026 г. |
30Наблюдать | CVE-2023-51390Эксплойта нет | Information Disclosure Vulnerability in Journalpumpaiven · journalpump · CWE-215 | Высокая7,5 | — | 0,3 % | 20 дек. 2023 г. |
28Наблюдать | CVE-2026-44934Эксплойта нет | Exposed tokens in SUSE Rancher AI Agent logssuse · rancher · CWE-215 | Высокая7,0 | — | 0,2 % | 6 июл. 2026 г. |
27Наблюдать | CVE-2025-34081Эксплойта нет | CONPROSYS HMI System (CHS) < 3.7.7 Exposed PHP Debug Infocontec · conprosys hmi system · CWE-215 | Средняя6,9 | — | 0,6 % | 1 июл. 2025 г. |
27Наблюдать | CVE-2026-62652Эксплойта нет | A vulnerability has been identified in Reyrolle 7SR5 (All versions < V2.70).siemens · reyrolle 7sr5 · CWE-215 | Средняя6,9 | — | 0,3 % | 8 сент. 2026 г. |
26Наблюдать | CVE-2022-0721Эксплойта нет | Insertion of Sensitive Information Into Debugging Code in microweber/microwebermicroweber · microweber · CWE-215 | Средняя6,5 | — | 1,4 % | 23 февр. 2022 г. |
26Наблюдать | CVE-2025-58598Эксплойта нет | WordPress Klarna Order Management for WooCommerce Plugin <= 1.9.8 - Sensitive Data Exposure Vulnerabilityklarna · klarna order management for woocommerce · CWE-215 | Средняя6,6 | — | 0,3 % | 3 сент. 2025 г. |
22Наблюдать | CVE-2026-79694Эксплойта нет | Dell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior to 5.36.00.00, contains an Insertion of Sensdell · secure connect gateway · CWE-215 | Средняя5,5 | — | 0,1 % | 9 сент. 2026 г. |
21Наблюдать | CVE-2018-1002104Эксплойта нет | Versions < 1.5 of the Kubernetes ingress default backend, which handles invalid ingress traffic, exposed prometheus metrics publicly.kubernetes · nginx ingress controller · CWE-215 | Средняя5,3 | — | 1,1 % | 14 янв. 2020 г. |
21Наблюдать | CVE-2023-49194Эксплойта нет | WordPress Importify (Dropshipping WooCommerce) plugin <= 1.0.4 - Sensitive Data Exposure vulnerabilityimportify · importify (dropshipping woocommerce) · CWE-215 | Средняя5,3 | — | 0,5 % | 9 дек. 2024 г. |
21Наблюдать | CVE-2026-33247Эксплойта нет | NATS credentials are exposed in monitoring port via command-line argvlinuxfoundation · nats-server · CWE-215 | Средняя5,3 | — | 0,5 % | 25 мар. 2026 г. |
17Наблюдать | CVE-2026-21759Эксплойта нет | HCL Hive is affected by an information exposure vulnerabilityhclsoftware · hcl hive · CWE-215 | Средняя4,3 | — | 0,2 % | 24 авг. 2026 г. |
13Наблюдать | CVE-2023-21462Эксплойта нет | The sensitive information exposure vulnerability in Quick Share Agent prior to versions 3.5.14.18 in Android 12 and 3.5.16.20 in Android 13 samsung · quick share · CWE-215 | Низкая3,3 | — | 0,2 % | 16 мар. 2023 г. |
11Наблюдать | CVE-2024-22194Эксплойта нет | cdo-local-uuid vulnerable to insertion of artifact derived from developer's Present Working Directory into demonstration codelfprojects · case python utilities · CWE-215 | Низкая2,8 | — | 0,4 % | 10 янв. 2024 г. |
11Наблюдать | CVE-2026-33966Эксплойта нет | An issue was discovered in camera in Samsung Mobile Processor Exynos 1330, 1380, 1480, 2400, 1580, 2500, 2600, and 1680.samsung · exynos 1330 firmware · CWE-215 | Низкая2,8 | — | 0,1 % | 13 сент. 2026 г. |
9Наблюдать | CVE-2025-0895Эксплойта нет | IBM Cognos Mobile information disclosureibm · cognos analytics mobile · CWE-215 | Низкая2,4 | — | 0,2 % | 2 мар. 2025 г. |
- CVE-2024-756940В плане
An information disclosure vulnerability in Ivanti ITSM on-prem and Neurons for ITSM versions 2023.4 and earlier allows an unauthenticated at
КритическаяCVSS 9,8Эксплойта нетEPSS 2 %ivanti · neurons for itsm13 авг. 2024 г.
- CVE-2026-7479936Наблюдать
SiYuan before 3.7.4 Unauthenticated Debug Endpoint Information Disclosure
КритическаяCVSS 9,2Эксплойта нетEPSS 1 %siyuan-note · siyuan17 авг. 2026 г.
- CVE-2019-378135Наблюдать
CF CLI does not sanitize user's password in verbose/trace/debug
ВысокаяCVSS 8,8Эксплойта нетEPSS 1 %cloudfoundry · command line interface7 мар. 2019 г.
- CVE-2018-119135Наблюдать
Cloud Foundry Garden-runC, versions prior to 1.11.0, contains an information exposure vulnerability.
ВысокаяCVSS 8,8Эксплойта нетEPSS 1 %cloudfoundry · cf-deployment29 мар. 2018 г.
- CVE-2025-2768430Наблюдать
Vasion Print (formerly PrinterLogic) before Virtual Appliance Host 1.0.735 Application 20.0.1330 allows Debug Bundle Contains Sensitive Data
ВысокаяCVSS 7,5Эксплойта нетEPSS 1 %printerlogic · vasion print5 мар. 2025 г.
- CVE-2026-225030Наблюдать
Unauthenticated Data Export and Source Code Disclosure via /dbviewer/ in METIS WIC
ВысокаяCVSS 7,5Эксплойта нетEPSS 0 %metis cyberspace technology sa · metis wic11 февр. 2026 г.
- CVE-2023-5139030Наблюдать
Information Disclosure Vulnerability in Journalpump
ВысокаяCVSS 7,5Эксплойта нетEPSS 0 %aiven · journalpump20 дек. 2023 г.
- CVE-2026-4493428Наблюдать
Exposed tokens in SUSE Rancher AI Agent logs
ВысокаяCVSS 7,0Эксплойта нетEPSS 0 %suse · rancher6 июл. 2026 г.
- CVE-2025-3408127Наблюдать
CONPROSYS HMI System (CHS) < 3.7.7 Exposed PHP Debug Info
СредняяCVSS 6,9Эксплойта нетEPSS 1 %contec · conprosys hmi system1 июл. 2025 г.
- CVE-2026-6265227Наблюдать
A vulnerability has been identified in Reyrolle 7SR5 (All versions < V2.70).
СредняяCVSS 6,9Эксплойта нетEPSS 0 %siemens · reyrolle 7sr58 сент. 2026 г.
- CVE-2022-072126Наблюдать
Insertion of Sensitive Information Into Debugging Code in microweber/microweber
СредняяCVSS 6,5Эксплойта нетEPSS 1 %microweber · microweber23 февр. 2022 г.
- CVE-2025-5859826Наблюдать
WordPress Klarna Order Management for WooCommerce Plugin <= 1.9.8 - Sensitive Data Exposure Vulnerability
СредняяCVSS 6,6Эксплойта нетEPSS 0 %klarna · klarna order management for woocommerce3 сент. 2025 г.
- CVE-2026-7969422Наблюдать
Dell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior to 5.36.00.00, contains an Insertion of Sens
СредняяCVSS 5,5Эксплойта нетEPSS 0 %dell · secure connect gateway9 сент. 2026 г.
- CVE-2018-100210421Наблюдать
Versions < 1.5 of the Kubernetes ingress default backend, which handles invalid ingress traffic, exposed prometheus metrics publicly.
СредняяCVSS 5,3Эксплойта нетEPSS 1 %kubernetes · nginx ingress controller14 янв. 2020 г.
- CVE-2023-4919421Наблюдать
WordPress Importify (Dropshipping WooCommerce) plugin <= 1.0.4 - Sensitive Data Exposure vulnerability
СредняяCVSS 5,3Эксплойта нетEPSS 1 %importify · importify (dropshipping woocommerce)9 дек. 2024 г.
- CVE-2026-3324721Наблюдать
NATS credentials are exposed in monitoring port via command-line argv
СредняяCVSS 5,3Эксплойта нетEPSS 1 %linuxfoundation · nats-server25 мар. 2026 г.
- CVE-2026-2175917Наблюдать
HCL Hive is affected by an information exposure vulnerability
СредняяCVSS 4,3Эксплойта нетEPSS 0 %hclsoftware · hcl hive24 авг. 2026 г.
- CVE-2023-2146213Наблюдать
The sensitive information exposure vulnerability in Quick Share Agent prior to versions 3.5.14.18 in Android 12 and 3.5.16.20 in Android 13
НизкаяCVSS 3,3Эксплойта нетEPSS 0 %samsung · quick share16 мар. 2023 г.
- CVE-2024-2219411Наблюдать
cdo-local-uuid vulnerable to insertion of artifact derived from developer's Present Working Directory into demonstration code
НизкаяCVSS 2,8Эксплойта нетEPSS 0 %lfprojects · case python utilities10 янв. 2024 г.
- CVE-2026-3396611Наблюдать
An issue was discovered in camera in Samsung Mobile Processor Exynos 1330, 1380, 1480, 2400, 1580, 2500, 2600, and 1680.
НизкаяCVSS 2,8Эксплойта нетEPSS 0 %samsung · exynos 1330 firmware13 сент. 2026 г.
- CVE-2025-08959Наблюдать
IBM Cognos Mobile information disclosure
НизкаяCVSS 2,4Эксплойта нетEPSS 0 %ibm · cognos analytics mobile2 мар. 2025 г.