CWE-319

High likelihood

Cleartext Transmission of Sensitive Information

Parent: CWE-311 - Missing Encryption of Sensitive Data

The product transmits sensitive or security-critical data in cleartext in a communication channel that can be sniffed by unauthorized actors.

898 vulnerabilities with CWE-319
CVE-2025-7731 HIGH
Mitsubishi Electric MELSEC iQ-F - Info Disclosure
CVSS 7.5
CVE-2025-31972 MEDIUM
HCL BigFix SM - Sensitive Information Exposure via Cleartext Internal Connections
CVSS 6.5
CVE-2025-52351 HIGH
Aikaan IoT Management Platform - Plaintext Password Exposure
CVSS 8.8
CVE-2025-6180 HIGH
StrongDM sdm-cli < 47.96.0 - Cleartext Transmission of Sensitive Pre-Authentication Token
CVE-2025-57727 MEDIUM
JetBrains IntelliJ IDEA < 2025.2 - Cleartext Transmission of Sensitive Information via Remote Reference
CVSS 4.7
CVE-2025-54156 HIGH
Sante PACS Server < 4.2.3 - Cleartext Transmission of Sensitive Credential Information
CVSS 7.4
CVE-2025-8863 HIGH
YugabyteDB <unknown> - Info Disclosure
CVE-2025-8741 LOW
macrozheng mall < 1.0.3 - Cleartext Transmission of Sensitive Information in /admin/login
CVSS 3.7
CVE-2025-52586 MEDIUM
EG4 Electronics Inverters - Cleartext Transmission of Sensitive MOD3 Command Traffic
CVSS 6.9
CVE-2025-54799 LOW
lego < 4.25.2 - Cleartext Transmission of Sensitive Information via ACME Protocol
CVE-2025-36020 MEDIUM
IBM Guardium Data Protection - Cleartext Transmission of Sensitive Credential Information
CVSS 5.9
CVE-2025-52490 HIGH
Couchbase Sync Gateway < 3.2.6 - Cleartext Transmission of Sensitive Information in Log Files
CVSS 7.3
CVE-2025-8205 LOW
Comodo Dragon < 134.0.6998.179 - Cleartext Transmission of Sensitive Information in IP DNS Leakage Detector
CVSS 3.7
CVE-2025-0252 LOW
HCL IntelliOps Event Management - Cleartext Transmission of Sensitive Information
CVSS 2.6
CVE-2025-0250 LOW
HCL IntelliOps Event Management - Cleartext Transmission of Sensitive Information via Cookie
CVSS 2.2
CVE-2025-53703 HIGH
DuraComm SPM-500 DP-10iN-100-MU < Version 4.10 - Cleartext Transmission of Sensitive Information
CVSS 7.5
CVE-2025-36107 MEDIUM
IBM Cognos Analytics Mobile 1.1.0-1.1.22 - Cleartext Transmission of Sensitive Information
CVSS 5.9
CVE-2025-2818 LOW
Motorola Smart Connect <1.0 - Info Disclosure
CVSS 3.5
CVE-2025-53756 HIGH
Digisol DG-GR6821AC Router - Info Disclosure
CVE-2025-53861 LOW
Ansible Automation Platform - Cleartext Transmission of Sensitive Cookies
CVSS 3.1
CVE-2025-44251 HIGH
Ecovacs Deebot T10 <1.7.2 - Info Disclosure
CVSS 7.5
CVE-2025-27457 MEDIUM
Endress MEAC300-FNADE4 Firmware - Cleartext Transmission of Sensitive Information via VNC
CVSS 6.5
CVE-2025-36034 MEDIUM
IBM InfoSphere Information Server 11.7 - Cleartext Transmission of Sensitive Information in API Requests
CVSS 5.3
CVE-2025-5087 MEDIUM
Kaleris NAVIS N4 ULC - Info Disclosure
CVE-2025-4378 CRITICAL
Ataturk University ATA-AOF Mobile App <20.06.2025 - Auth Bypass
CVSS 10.0
Details
Vulnerabilities 898
Exploit Likelihood High