Falhas do tipo CWE-201

333 resultados
CVE-2025-47541HIGHWordPress Mail Mint plugin <= 1.17.7 - Sensitive Data Exposure VulnerabilityEPSS 0.4%CVE-2026-27406HIGHWordPress My Tickets plugin <= 2.1.0 - Sensitive Data Exposure vulnerabilityEPSS 0.4%CVE-2024-7698MEDIUMPhoenix Contact: Access to CSRF tokens of higher privileged users in MGUARD productsEPSS 0.4%CVE-2024-8429MEDIUMImproper Authentication in Digital Operation Services' WiFiBuradaEPSS 0.4%CVE-2026-39480HIGHWordPress Backup Migration plugin <= 2.1.1 - Sensitive Data Exposure vulnerabilityEPSS 0.4%CVE-2026-4035CRITICALEnvironment Variable Resolution Vulnerability in mlflow/mlflowEPSS 0.4%CVE-2025-48749CRITICALNetwrix Directory Manager (formerly Imanami GroupID) v11.0.0.0 and before & after v.11.1.25134.03 inserts Sensitive Information into Sent DaEPSS 0.4%CVE-2025-49584HIGHXWiki makes title of inaccessible pages available through the class property values REST APIEPSS 0.4%CVE-2025-24567MEDIUMWordPress WP Mailster plugin <= 1.8.16.0 - Sensitive Data Exposure vulnerabilityEPSS 0.4%CVE-2024-6747MEDIUMInformation leak in mknotifydEPSS 0.4%CVE-2024-43259MEDIUMWordPress Order Export for WooCommerce plugin <= 3.23 - Sensitive Data Exposure vulnerabilityEPSS 0.4%CVE-2024-43230MEDIUMWordPress Shared Files – Premium Download Manager & Secure File Sharing with Frontend File Upload plugin <= 1.7.28 - Sensitive Data Exposure vulnerabilityEPSS 0.4%CVE-2024-43264MEDIUMWordPress Create by Mediavine plugin <= 1.9.8 - Sensitive Data Exposure vulnerabilityEPSS 0.4%CVE-2025-59268MEDIUMBIG-IP Configuration utility vulnerabilityEPSS 0.4%CVE-2025-30609MEDIUMWordPress AppExperts plugin <= 1.4.3 - Sensitive Data Exposure VulnerabilityEPSS 0.4%CVE-2024-45653MEDIUMIBM Sterling Connect:Direct Web Services information disclosureEPSS 0.4%CVE-2025-64502MEDIUMParse Server allows public `explain` queries which may expose sensitive database performance information and schema detailsEPSS 0.4%CVE-2025-67721MEDIUMAircompressor's Snappy and LZ4 Java-based decompressor implementation can leak information from reused output bufferEPSS 0.4%CVE-2024-13276HIGHFile Entity (fieldable files) - Moderately critical - Information Disclosure - SA-CONTRIB-2024-040EPSS 0.4%CVE-2025-59010HIGHWordPress Permalink Manager Lite Plugin <= 2.5.1.3 - Sensitive Data Exposure VulnerabilityEPSS 0.4%