CWE-1295 · 21 kayıt
Debug Messages Revealing Unnecessary Information
Bu sınıftaki CVE’ler
21 kayıt
| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
35İzleyin | CVE-2024-38516İstismar yok | Aimeos HTML client may potentially reveal sensitive information in error logaimeos · ai-client-html · CWE-1295 | Yüksek8,8 | — | %0,5 | 25 Haz 2024 |
30İzleyin | CVE-2024-45784İstismar yok | Apache Airflow: Sensitive configuration values are not masked in the logs by defaultapache · airflow · CWE-1295 | Yüksek7,5 | — | %1,3 | 15 Kas 2024 |
30İzleyin | CVE-2026-28811İstismar yok | Apache JSPWiki: Error Handling - Reveals Error Detailsapache · jspwiki · CWE-1295 | Yüksek7,5 | — | %0,8 | 30 Tem 2026 |
30İzleyin | CVE-2025-31001İstismar yok | WordPress GTM Kit plugin <= 2.4.0 - Sensitive Data Exposure vulnerabilitytla media · gtm kit · CWE-1295 | Yüksek7,5 | — | %0,5 | 1 Nis 2025 |
30İzleyin | CVE-2023-5392İstismar yok | C300 information leak due to an analysis feature which allows extracting more memory over the network than required by the function.honeywell · c300 · CWE-1295 | Yüksek7,5 | — | %0,5 | 11 Nis 2024 |
30İzleyin | CVE-2023-4215İstismar yok | Advantech WebAccess Debug Messages Revealing Unnecessary Informationadvantech · webaccess · CWE-1295 | Yüksek7,5 | — | %0,5 | 16 Eki 2023 |
27İzleyin | CVE-2025-42604İstismar yok | Detailed Error Response Vulnerability in Meon KYC solutionsmeon · kyc solutions · CWE-1295 | Orta6,9 | — | %0,5 | 23 Nis 2025 |
26İzleyin | CVE-2025-2877İstismar yok | Event-driven-ansible: exposure inventory passwords in plain text when starting a rulebook activation with verbosity set to debug in edared hat · red hat ansible automation platform 2.4 for rhel 8 · CWE-1295 | Orta6,5 | — | %0,4 | 28 Mar 2025 |
24İzleyin | CVE-2025-12910İstismar yok | Inappropriate implementation in Passkeys in Google Chrome prior to 140.0.7339.80 allowed a local attacker to obtain potentially sensitive ingoogle · chrome · CWE-1295 | Orta6,2 | — | %0,1 | 8 Kas 2025 |
22İzleyin | CVE-2025-46775İstismar yok | A debug messages revealing unnecessary information vulnerability in Fortinet FortiExtender 7.6.0 through 7.6.1, FortiExtender 7.4.0 through fortinet · fortiextender firmware · CWE-1295 | Orta5,5 | — | %0,2 | 18 Kas 2025 |
21İzleyin | CVE-2021-31412İstismar yok | Possible route enumeration in production mode via RouteNotFoundError view in Vaadin 10, 11-14, and 15-19vaadin · flow · CWE-1295 | Orta5,3 | — | %1,3 | 24 Haz 2021 |
21İzleyin | CVE-2025-2469İstismar yok | Debug Messages Revealing Unnecessary Information in GitLabgitlab · gitlab · CWE-1295 | Orta5,3 | — | %0,4 | 10 Nis 2025 |
20İzleyin | CVE-2025-59109İstismar yok | UART Leaking Sensitive Data in dormakaba registration unit 9002dormakaba · dormakaba registration unit 9002 · CWE-1295 | Orta5,1 | — | %0,4 | 26 Oca 2026 |
19İzleyin | CVE-2024-11217İstismar yok | Oauth-server-container: oauth-server-container logs client secret in debug levelred hat · red hat openshift container platform 4 · CWE-1295 | Orta4,9 | — | %0,4 | 15 Kas 2024 |
18İzleyin | CVE-2024-27179İstismar yok | Session disclosure inside the log filestoshiba tec corporation · toshiba tec e-studio multi-function peripheral (mfp) · CWE-1295 | Orta4,7 | — | %0,3 | 14 Haz 2024 |
18İzleyin | CVE-2025-35031İstismar yok | Medical Informatics Engineering Enterprise Health includes session token in debug outputmieweb · enterprise health · CWE-1295 | Orta4,6 | — | %0,1 | 29 Eyl 2025 |
17İzleyin | CVE-2022-34364İstismar yok | Dell BSAFE SSL-J, versions before 6.5 and version 7.0 contain a debug message revealing unnecessary information vulnerability.dell · bsafe ssl-j · CWE-1295 | Orta4,4 | — | %0,2 | 10 Şub 2023 |
17İzleyin | CVE-2023-28077İstismar yok | Dell BSAFE SSL-J, versions prior to 6.5, and versions 7.0 and 7.1 contain a debug message revealing unnecessary information vulnerability.dell · bsafe ssl-j · CWE-1295 | Orta4,4 | — | %0,2 | 9 Şub 2024 |
17İzleyin | CVE-2021-25476İstismar yok | An information disclosure vulnerability in Widevine TA log prior to SMR Oct-2021 Release 1 allows attackers to bypass the ASLR protection megoogle · android · CWE-1295 | Orta4,4 | — | %0,1 | 6 Eki 2021 |
15İzleyin | CVE-2025-20643İstismar yok | In DA, there is a possible out of bounds read due to a missing bounds check.google · android · CWE-1295 | Düşük3,9 | — | %0,1 | 3 Şub 2025 |
9İzleyin | CVE-2025-36744İstismar yok | SolarEdge SE3680H - Information Exposure during Bootloader Loopsolaredge · se3680h firmware · CWE-1295 | Düşük2,4 | — | %0,2 | 12 Ara 2025 |
- CVE-2024-3851635İzleyin
Aimeos HTML client may potentially reveal sensitive information in error log
YüksekCVSS 8,8İstismar yokEPSS %1aimeos · ai-client-html25 Haz 2024
- CVE-2024-4578430İzleyin
Apache Airflow: Sensitive configuration values are not masked in the logs by default
YüksekCVSS 7,5İstismar yokEPSS %1apache · airflow15 Kas 2024
- CVE-2026-2881130İzleyin
Apache JSPWiki: Error Handling - Reveals Error Details
YüksekCVSS 7,5İstismar yokEPSS %1apache · jspwiki30 Tem 2026
- CVE-2025-3100130İzleyin
WordPress GTM Kit plugin <= 2.4.0 - Sensitive Data Exposure vulnerability
YüksekCVSS 7,5İstismar yokEPSS %0tla media · gtm kit1 Nis 2025
- CVE-2023-539230İzleyin
C300 information leak due to an analysis feature which allows extracting more memory over the network than required by the function.
YüksekCVSS 7,5İstismar yokEPSS %0honeywell · c30011 Nis 2024
- CVE-2023-421530İzleyin
Advantech WebAccess Debug Messages Revealing Unnecessary Information
YüksekCVSS 7,5İstismar yokEPSS %0advantech · webaccess16 Eki 2023
- CVE-2025-4260427İzleyin
Detailed Error Response Vulnerability in Meon KYC solutions
OrtaCVSS 6,9İstismar yokEPSS %0meon · kyc solutions23 Nis 2025
- CVE-2025-287726İzleyin
Event-driven-ansible: exposure inventory passwords in plain text when starting a rulebook activation with verbosity set to debug in eda
OrtaCVSS 6,5İstismar yokEPSS %0red hat · red hat ansible automation platform 2.4 for rhel 828 Mar 2025
- CVE-2025-1291024İzleyin
Inappropriate implementation in Passkeys in Google Chrome prior to 140.0.7339.80 allowed a local attacker to obtain potentially sensitive in
OrtaCVSS 6,2İstismar yokEPSS %0google · chrome8 Kas 2025
- CVE-2025-4677522İzleyin
A debug messages revealing unnecessary information vulnerability in Fortinet FortiExtender 7.6.0 through 7.6.1, FortiExtender 7.4.0 through
OrtaCVSS 5,5İstismar yokEPSS %0fortinet · fortiextender firmware18 Kas 2025
- CVE-2021-3141221İzleyin
Possible route enumeration in production mode via RouteNotFoundError view in Vaadin 10, 11-14, and 15-19
OrtaCVSS 5,3İstismar yokEPSS %1vaadin · flow24 Haz 2021
- CVE-2025-246921İzleyin
Debug Messages Revealing Unnecessary Information in GitLab
OrtaCVSS 5,3İstismar yokEPSS %0gitlab · gitlab10 Nis 2025
- CVE-2025-5910920İzleyin
UART Leaking Sensitive Data in dormakaba registration unit 9002
OrtaCVSS 5,1İstismar yokEPSS %0dormakaba · dormakaba registration unit 900226 Oca 2026
- CVE-2024-1121719İzleyin
Oauth-server-container: oauth-server-container logs client secret in debug level
OrtaCVSS 4,9İstismar yokEPSS %0red hat · red hat openshift container platform 415 Kas 2024
- CVE-2024-2717918İzleyin
Session disclosure inside the log files
OrtaCVSS 4,7İstismar yokEPSS %0toshiba tec corporation · toshiba tec e-studio multi-function peripheral (mfp)14 Haz 2024
- CVE-2025-3503118İzleyin
Medical Informatics Engineering Enterprise Health includes session token in debug output
OrtaCVSS 4,6İstismar yokEPSS %0mieweb · enterprise health29 Eyl 2025
- CVE-2022-3436417İzleyin
Dell BSAFE SSL-J, versions before 6.5 and version 7.0 contain a debug message revealing unnecessary information vulnerability.
OrtaCVSS 4,4İstismar yokEPSS %0dell · bsafe ssl-j10 Şub 2023
- CVE-2023-2807717İzleyin
Dell BSAFE SSL-J, versions prior to 6.5, and versions 7.0 and 7.1 contain a debug message revealing unnecessary information vulnerability.
OrtaCVSS 4,4İstismar yokEPSS %0dell · bsafe ssl-j9 Şub 2024
- CVE-2021-2547617İzleyin
An information disclosure vulnerability in Widevine TA log prior to SMR Oct-2021 Release 1 allows attackers to bypass the ASLR protection me
OrtaCVSS 4,4İstismar yokEPSS %0google · android6 Eki 2021
- CVE-2025-2064315İzleyin
In DA, there is a possible out of bounds read due to a missing bounds check.
DüşükCVSS 3,9İstismar yokEPSS %0google · android3 Şub 2025
- CVE-2025-367449İzleyin
SolarEdge SE3680H - Information Exposure during Bootloader Loop
DüşükCVSS 2,4İstismar yokEPSS %0solaredge · se3680h firmware12 Ara 2025