CWE-315 · 7 kayıt
Cleartext Storage of Sensitive Information in a Cookie
Bu sınıftaki CVE’ler
7 kayıt
| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
37İzleyin | CVE-2024-8644İstismar yok | Cleartext Storage of Sensitive Information in Oceanic Software's ValeAppoceanicsoft · valeapp · CWE-315 | Kritik9,3 | — | %0,3 | 27 Eyl 2024 |
36İzleyin | CVE-2026-25818İstismar yok | HMS Networks Ewon Flexy with firmware before 15.0s4, Cosy+ with firmware 22.xx before 22.1s6, and Cosy+ with firmware 23.xx before 23.0s3 haCWE-315 | Kritik9,1 | — | %0,2 | 13 Mar 2026 |
32İzleyin | CVE-2024-41290Kavram kanıtı | FlatPress CMS v1.3.1 1.3 was discovered to use insecure methods to store authentication data via the cookie's component.flatpress · flatpress · CWE-315 | Yüksek8,1 | — | %0,4 | 2 Eki 2024 |
30İzleyin | CVE-2018-19941İstismar yok | Cleartext Storage of Sensitive Information in Cookiesqnap · qts · CWE-315 | Yüksek7,5 | — | %0,7 | 31 Ara 2020 |
30İzleyin | CVE-2024-24768İstismar yok | 1Panel set-cookie is missing the Secure keywordfit2cloud · 1panel · CWE-315 | Yüksek7,5 | — | %0,3 | 5 Şub 2024 |
22İzleyin | CVE-2021-34564İstismar yok | In WirelessHART-Gateway versions 3.0.9 a vulnerability allows to read and write sensitive data in a cookiepepperl-fuchs · wha-gw-f2d2-0-as-z2-eth firmware · CWE-315 | Orta5,5 | — | %0,2 | 31 Ağu 2021 |
12İzleyin | GHSA-j4g3-3q8x-jxqpİstismar yok | dbt-core's secret env vars written to package-lock.json in plaintextPyPI · dbt-core · CWE-315 | Düşük3,2 | — | — | 8 Ara 2023 |
- CVE-2024-864437İzleyin
Cleartext Storage of Sensitive Information in Oceanic Software's ValeApp
KritikCVSS 9,3İstismar yokEPSS %0oceanicsoft · valeapp27 Eyl 2024
- CVE-2026-2581836İzleyin
HMS Networks Ewon Flexy with firmware before 15.0s4, Cosy+ with firmware 22.xx before 22.1s6, and Cosy+ with firmware 23.xx before 23.0s3 ha
KritikCVSS 9,1İstismar yokEPSS %013 Mar 2026
- CVE-2024-4129032İzleyin
FlatPress CMS v1.3.1 1.3 was discovered to use insecure methods to store authentication data via the cookie's component.
YüksekCVSS 8,1Kavram kanıtıEPSS %0flatpress · flatpress2 Eki 2024
- CVE-2018-1994130İzleyin
Cleartext Storage of Sensitive Information in Cookies
YüksekCVSS 7,5İstismar yokEPSS %1qnap · qts31 Ara 2020
- CVE-2024-2476830İzleyin
1Panel set-cookie is missing the Secure keyword
YüksekCVSS 7,5İstismar yokEPSS %0fit2cloud · 1panel5 Şub 2024
- CVE-2021-3456422İzleyin
In WirelessHART-Gateway versions 3.0.9 a vulnerability allows to read and write sensitive data in a cookie
OrtaCVSS 5,5İstismar yokEPSS %0pepperl-fuchs · wha-gw-f2d2-0-as-z2-eth firmware31 Ağu 2021
- GHSA-j4g3-3q8x-jxqp12İzleyin
dbt-core's secret env vars written to package-lock.json in plaintext
DüşükCVSS 3,2İstismar yokPyPI · dbt-core8 Ara 2023