Weaknesses of type CWE-402
23 resultsCVE-2025-32360MEDIUMIn Zammad 6.4.x before 6.4.2, there is information exposure. Only agents should be able to see and work on shared article drafts. However, aEPSS 0.2%CVE-2025-52925MEDIUMIn One Identity OneLogin Active Directory Connector before 6.1.5, encryption of the DirectoryToken was mishandled, aka ST-812.EPSS 0.1%CVE-2025-67745HIGHMyhoard logs backup encryption key in plain textEPSS 0.1%