CWE-319

High likelihood

Cleartext Transmission of Sensitive Information

Parent: CWE-311 - Missing Encryption of Sensitive Data

The product transmits sensitive or security-critical data in cleartext in a communication channel that can be sniffed by unauthorized actors.

898 vulnerabilities with CWE-319
CVE-2025-32880 CRITICAL
COROS PACE 3 Firmware < 3.0808.0 - Cleartext Transmission of Sensitive Information via Firmware Download
CVSS 9.8
CVE-2025-26199 CRITICAL
CloudClassroom-PHP-Project 1.0 - Cleartext Transmission of Sensitive Information via HTTP Login
CVSS 9.8
CVE-2025-4227 LOW
Palo Alto Networks GlobalProtect <6-0 - Info Disclosure
CVSS 3.5
CVE-2025-49194 HIGH
SICK media_server - Cleartext Transmission of Sensitive Information
CVSS 7.5
CVE-2025-49183 HIGH
SICK media_server - Cleartext Transmission of Sensitive Information via REST API
CVSS 7.5
CVE-2025-44612 MEDIUM
Tinxy WiFi Lock Controller v1 RF - Cleartext Transmission of Sensitive Information
CVSS 5.9
CVE-2025-5270 HIGH
Firefox < 139 - Cleartext Transmission of Sensitive Information via SNI
CVSS 7.5
CVE-2025-3480 MEDIUM
MedDream WEB DICOM Viewer - Unauthenticated Cleartext Transmission of Credentials
CVSS 6.5
CVE-2025-0136 MEDIUM
Palo Alto Networks PAN-OS - Info Disclosure
CVE-2025-40583 MEDIUM
SCALANCE LPE9403 - Cleartext Transmission of Sensitive Information
CVSS 4.4
CVE-2025-27720 HIGH
Pixmeo Osirix MD Web Portal - Info Disclosure
CVSS 7.4
CVE-2025-47419 CRITICAL
Crestron Automate VX <6.4.0.49 - Info Disclosure
CVE-2025-32887 HIGH
goTenna Mesh Firmware - Cleartext Transmission of Sensitive Information via Command Channel
CVSS 7.1
CVE-2025-32884 MEDIUM
goTenna Mesh Firmware - Cleartext Transmission of Sensitive Information
CVSS 4.3
CVE-2025-32881 MEDIUM
goTenna v1 - Cleartext Transmission of Sensitive Information via GID in Messages
CVSS 4.3
CVE-2025-25046 LOW
IBM InfoSphere Information Server 11.7 - Info Disclosure
CVSS 3.7
CVE-2025-42603 HIGH
Meon KYC solutions - Authenticated Cleartext Transmission of Sensitive Information in API Response Payloads
CVE-2025-32793 MEDIUM
Cilium 1.15.0-1.15.15, 1.16.0-1.16.8, 1.17.0-1.17.2 - Cleartext Transmission via WireGuard Race Condition
CVSS 4.0
CVE-2025-43013 MEDIUM
JetBrains Toolbox App <2.6 - Info Disclosure
CVSS 6.9
CVE-2025-43704 MEDIUM
Arctera/Veritas Data Insight <7.1.2 - Info Disclosure
CVSS 4.7
CVE-2025-27722 MEDIUM
Wi-Fi AP UNIT AC-WPS-11ac - Info Disclosure
CVSS 5.9
CVE-2025-26654 MEDIUM
SAP Commerce Cloud - Info Disclosure
CVSS 6.8
CVE-2025-3329 LOW
Consumer Comanda Mobile <15.0.0.8 - Info Disclosure
CVSS 3.1
CVE-2025-2861 HIGH
SaTECH BCU Firmware 2.1.3 - Cleartext Transmission of Sensitive Information via HTTP
CVSS 7.5
CVE-2025-2311 CRITICAL
SecHard <3.3.0.20220411 - Privilege Escalation
CVSS 9.0
Details
Vulnerabilities 898
Exploit Likelihood High