CWE-201
Insertion of Sensitive Information Into Sent Data
The code transmits data to another actor, but a portion of the data includes sensitive information that should not be accessible to that actor.
368 vulnerabilities with CWE-201
CVE-2025-66125
MEDIUM
Nitesh Ultimate Auction <4.3.2 - Info Disclosure
CVSS 5.3
CVE-2025-49300
LOW
shinetheme Traveler Option Tree <2.9 - Info Disclosure
CVSS 2.7
CVE-2025-66388
MEDIUM
Apache Airflow <3.1.4 - Info Disclosure
CVSS 6.5
CVE-2025-67721
HIGH
Aircompressor <3.3 - Info Disclosure
CVSS 7.5
CVE-2025-63071
MEDIUM
auxin-elements <2.17.12 - Info Disclosure
CVSS 5.3
CVE-2025-63007
MEDIUM
Metagauss EventPrime <4.2.4.1 - Info Disclosure
CVSS 4.3
CVE-2025-62997
MEDIUM
WP EasyCart <5.8.11 - Info Disclosure
CVSS 5.3
CVE-2025-62994
MEDIUM
WP Messiah WP AI CoPilot <1.2.8 - Info Disclosure
CVSS 4.3
CVE-2025-62109
MEDIUM
INFINITUM FORM Geo Controller <8.9.4 - Info Disclosure
CVSS 5.3
CVE-2025-66566
HIGH
lz4-java < 1.10.1 - Information Disclosure via Insufficient Output Buffer Clearing
CVE-2025-58098
HIGH
Apache HTTP Server <2.4.66 - Command Injection
CVSS 8.3
CVE-2025-13295
HIGH
Argus Technology Inc. BILGER <2.4.9 - Info Disclosure
CVSS 7.5
CVE-2025-20789
MEDIUM
Android - Local Information Disclosure in GPU pdma via Missing Bounds Check
CVSS 4.4
CVE-2025-66304
MEDIUM
Grav <1.8.0-beta.27 - Info Disclosure
CVSS 6.2
CVE-2025-66035
HIGH
Angular <19.2.16, 20.3.14, 21.0.1 - XSS
CVE-2025-65944
MEDIUM
Sentry-Javascript <10.27.0 - Info Disclosure
CVE-2025-64299
LOW
LogStare Collector - Info Disclosure
CVSS 2.7
CVE-2025-52639
LOW
HCL Connections - Sensitive Information Disclosure via Improper Data Rendering
CVSS 3.5
CVE-2025-7000
MEDIUM
GitLab CE/EE <18.3.6-18.5.2 - Info Disclosure
CVSS 4.3
CVE-2025-2615
MEDIUM
GitLab <18.3.6-18.5.2 - Info Disclosure
CVSS 4.3
CVE-2025-64748
MEDIUM
Directus <11.13.0 - Info Disclosure
CVSS 6.5
CVE-2025-64407
MEDIUM
Apache OpenOffice <= 4.1.15 - Information Disclosure via External Link URI Scheme
CVSS 5.3
CVE-2025-59509
MEDIUM
Windows Speech - Information Disclosure via Sensitive Data Insertion
CVSS 5.5
CVE-2025-64502
MEDIUM
Parse Server <8.5.0-alpha.5 - Info Disclosure
CVE-2025-62039
HIGH
AYS Pro AI ChatBot - Info Disclosure
CVSS 7.5
Details
Vulnerabilities
368