CWE-200

High likelihood

Exposure of Sensitive Information to an Unauthorized Actor

Parent: CWE-668 - Exposure of Resource to Wrong Sphere

The product exposes sensitive information to an actor that is not explicitly authorized to have access to that information.

10,109 vulnerabilities with CWE-200
CVE-2025-57755 HIGH
musistudio claude-code-router < 1.0.34 - Exposure of Sensitive Information via Improper CORS Configuration
CVE-2025-9240 MEDIUM
elunez eladmin <2.7 - Info Disclosure
CVSS 4.3
CVE-2025-20345 MEDIUM
Cisco Duo Authentication Proxy - Info Disclosure
CVSS 4.9
CVE-2025-8448 LOW
EcoStruxure Building Operation Enterprise Server Sensitive Information Exposure via SMB
CVE-2025-9139 MEDIUM
Scada-LTS 2.7.8.1 - Info Disclosure
CVSS 4.3
CVE-2025-7654 HIGH
FunnelKit Automations/Builder <3.6.3/<3.11.0.2 - Authenticated Sensitive Info Exposure
CVSS 8.8
CVE-2025-54118 MEDIUM
NamelessMC < 2.2.4 - Unauthenticated Sensitive Information Exposure via List Parameter
CVSS 5.3
CVE-2025-43201 MEDIUM
Apple Music Classical <2.3 - Info Disclosure
CVSS 6.2
CVE-2025-26709 MEDIUM
ZTE F50 <F50_FLYMODEM_ZYV1.0.0B07 - Unauthenticated Sensitive Information Exposure
CVSS 5.7
CVE-2025-8091 MEDIUM
EventON Lite <2.4.6 - Info Disclosure
CVSS 4.3
CVE-2025-9005 LOW
mtons mblog < 3.5.0 - Information Exposure via Error Message in Registration Endpoint
CVSS 3.7
CVE-2025-8676 MEDIUM
B Slider- Gutenberg Slider Block <2.0.0 - Info Disclosure
CVSS 4.3
CVE-2025-50862 MEDIUM
Lotus Cars Android app <1.2.8 - Info Disclosure
CVSS 5.9
CVE-2025-27845 CRITICAL
ESPEC North America Web Controller <3.3.4 - Info Disclosure
CVSS 9.8
CVE-2025-9036 HIGH
Runtime Event System - Info Disclosure
CVE-2025-55673 MEDIUM
Apache Superset <4.1.3 - Info Disclosure
CVSS 4.3
CVE-2025-43988 HIGH
KuWFi 5G01-X55 FL2020_V0.0.12 - Info Disclosure
CVSS 7.5
CVE-2025-43986 CRITICAL
KuwFi GC111 GC111-GL-LM321_V3.0_20191211 - Unauthenticated Exposure of Sensitive Information via TELNET Service
CVSS 9.8
CVE-2025-55165 HIGH
Autocaliweb <0.8.3 - Info Disclosure
CVSS 8.2
CVE-2025-53781 HIGH
Azure Virtual Machines - Info Disclosure
CVSS 7.7
CVE-2025-53728 MEDIUM
Microsoft Dynamics 365 - Info Disclosure
CVSS 6.5
CVE-2025-53156 MEDIUM
Microsoft Windows 11 24h2 < 10.0.26100.4851 - Information Disclosure
CVSS 5.5
CVE-2025-53136 MEDIUM
Windows 10 1507-22H2, Windows 11 22H2-24H2, Windows Server 2008 - Authenticated Information Disclosure in NT OS Kernel
CVSS 5.5
CVE-2025-53134 HIGH
Windows 10/Server 2008 Privilege Escalation via AFD Race Condition
CVSS 7.0
CVE-2025-50154 MEDIUM
Windows File Explorer - Info Disclosure
CVSS 6.5
Details
Vulnerabilities 10,109
Exploit Likelihood High