Weaknesses of type CWE-838
8 resultsCVE-2019-6110MEDIUMIn OpenSSH 7.9, due to accepting and displaying arbitrary stderr output from the server, a malicious server (or Man-in-The-Middle attacker) EPSS 20.9%CVE-2023-6512MEDIUMInappropriate implementation in Web Browser UI in Google Chrome prior to 120.0.6099.62 allowed a remote attacker to potentially spoof the coEPSS 1.3%CVE-2020-7292MEDIUMWeb Gateway (MWG) - Inappropriate Encoding for output contextEPSS 0.9%CVE-2025-4052CRITICALInappropriate implementation in DevTools in Google Chrome prior to 136.0.7103.59 allowed a remote attacker who convinced a user to engage inEPSS 0.6%CVE-2023-3735MEDIUMInappropriate implementation in Web API Permission Prompts in Google Chrome prior to 115.0.5790.98 allowed a remote attacker to obfuscate seEPSS 0.6%CVE-2024-11702HIGHCopying sensitive information from Private Browsing tabs on Android, such as passwords, may have inadvertently stored data in the cloud-baseEPSS 0.5%CVE-2024-34006MEDIUMmoodle: unsanitized HTML in site log for config_log_createdEPSS 0.4%CVE-2023-5770MEDIUMHTML injection in email body through email subjectEPSS 0.3%