Weaknesses of type CWE-319
488 resultsCVE-2023-29680MEDIUMCleartext Transmission in set-cookie:ecos_pw: Tenda N301 v6.0, Firmware v12.02.01.61_multi allows an authenticated attacker on the LAN or WLEPSS 0.4%CVE-2023-30515HIGHJenkins Thycotic DevOps Secrets Vault Plugin 1.0.0 and earlier does not properly mask (i.e., replace with asterisks) credentials in the builEPSS 0.4%CVE-2023-5461LOWDelta Electronics WPLSoft Modbus cleartext transmissionEPSS 0.4%CVE-2003-5002LOWISS BlackICE PC Protection Update cleartext transmissionEPSS 0.4%CVE-2024-6515HIGHunauthorized file accessEPSS 0.4%CVE-2021-21387HIGHPartial secret key disclosure, improper safety number calculation, & inadequate encryption strengthEPSS 0.4%CVE-2022-39287HIGHPlaintext transmission of CSRF tokens in tiny-csrfEPSS 0.4%CVE-2022-3929HIGHCommunication between the client and server partially using CORBA over TCP/IPEPSS 0.4%CVE-2020-4497MEDIUMIBM Spectrum Protect Plus information disclosureEPSS 0.4%CVE-2023-0053HIGHSAUTER Controls Nova 200–220 Series Cleartext Transmission of Sensitive InformationEPSS 0.4%CVE-2022-41636CRITICALCommunication traffic involving "Ethernet Q Commands" service of Haas Controller version 100.20.000.1110 is transmitted in cleartext. This aEPSS 0.4%CVE-2023-31193HIGH
Snap One OvrC Pro versions prior to 7.3 use HTTP connections when downloading a program from their servers. Because they do notEPSS 0.4%CVE-2022-46680HIGH
A CWE-319: Cleartext transmission of sensitive information vulnerability exists that could
cause disclosure of sensitive information, deniaEPSS 0.4%CVE-2025-32880CRITICALAn issue was discovered on COROS PACE 3 devices through 3.0808.0. It implements a function to connect the watch to a WLAN. With WLAN access,EPSS 0.4%CVE-2025-62578HIGHDVP-12SE - Modbus/TCP Cleartext Transmission of Sensitive InformationEPSS 0.4%CVE-2024-1657HIGHPlatform: insecure websocket used when interacting with eda serverEPSS 0.4%CVE-2023-46447MEDIUMThe POPS! Rebel application 5.0 for Android, in POPS! Rebel Bluetooth Glucose Monitoring System, sends unencrypted glucose measurements overEPSS 0.4%CVE-2022-45483MEDIUMLazy Mouse allows an attacker (in a man in the middle position between the server and a connected device) to see all data (including keypresEPSS 0.4%CVE-2023-51740HIGHCleartext Submission of Password vulnerability in Skyworth RouterEPSS 0.4%CVE-2023-51741HIGHCleartext Submission of Password vulnerability in Skyworth RouterEPSS 0.4%