Weaknesses of type CWE-497

334 results
CVE-2026-43654HIGHThe issue was addressed with improved memory handling. This issue is fixed in iOS 18.7.9 and iPadOS 18.7.9, iOS 26.5 and iPadOS 26.5, macOS EPSS 0.3%CVE-2026-40796MEDIUMWordPress WPPizza plugin <= 3.19.9 - Sensitive Data Exposure vulnerabilityEPSS 0.3%CVE-2026-42660MEDIUMWordPress Contest Gallery plugin <= 28.1.7 - Sensitive Data Exposure vulnerabilityEPSS 0.3%CVE-2026-48878MEDIUMWordPress Visual Link Preview plugin <= 2.4.1 - Sensitive Data Exposure vulnerabilityEPSS 0.3%CVE-2025-3606HIGHVestel AC Charger Exposure of Sensitive System Information to an Unauthorized Control SphereEPSS 0.3%CVE-2024-41781MEDIUMIBM PowerVM Hypervisor information disclosureEPSS 0.3%CVE-2024-9929MEDIUMA vulnerability exists in NSD570 that allows any authenticated user to access all device logs disclosing login information with timestamps.EPSS 0.3%CVE-2025-59098HIGHTrace Functionality Leaking Sensitive Data in dormakaba access managerEPSS 0.3%CVE-2025-34156MEDIUMTibbo AggreGate Network Manager < 6.40.05 System Information ExposureEPSS 0.3%CVE-2025-26911MEDIUMWordPress System Dashboard plugin <= 2.8.18 - Sensitive Data Exposure vulnerabilityEPSS 0.3%CVE-2024-37070MEDIUMIBM Concert Software information disclosureEPSS 0.3%CVE-2023-23472LOWIBM InfoSphere Information Server information disclosureEPSS 0.3%CVE-2025-47540MEDIUMWordPress weMail plugin <= 1.14.13 - Sensitive Data Exposure VulnerabilityEPSS 0.3%CVE-2026-25468MEDIUMWordPress Happy Addons for Elementor plugin <= 3.20.8 - Sensitive Data Exposure vulnerabilityEPSS 0.3%CVE-2024-52367MEDIUMIBM Concert Software information disclosureEPSS 0.3%CVE-2025-58583MEDIUMUser EnumerationEPSS 0.3%CVE-2025-39589MEDIUMWordPress Essential Addons for Elementor plugin <= 6.1.9 - Sensitive Data Exposure VulnerabilityEPSS 0.3%CVE-2025-14712HIGHJHENG GAO|Student Learning Assessment and Support System - Exposure of Sensitive InformationEPSS 0.3%CVE-2025-68943MEDIUMGitea before 1.21.8 inadvertently discloses users' login times by allowing (for example) the lastlogintime explore/users sort order.EPSS 0.3%CVE-2024-22124MEDIUMInformation Disclosure vulnerability in SAP NetWeaver Internet Communication ManagerEPSS 0.3%