CWE-359

Exposure of Private Personal Information to an Unauthorized Actor

Parent: CWE-200 - Exposure of Sensitive Information to an Unauthorized Actor

The product does not properly prevent a person's private, personal information from being accessed by actors who either (1) are not explicitly authorized to access the information or (2) do not have the implicit consent of the person about whom the information is collected.

164 vulnerabilities with CWE-359
CVE-2026-0102 LOW
Web Browser - Info Disclosure
CVSS 3.1
CVE-2020-37173 HIGH
AVideo Platform 8.1 - Info Disclosure
CVSS 7.5
CVE-2026-24321 MEDIUM
SAP Commerce Cloud - Info Disclosure
CVSS 5.3
CVE-2025-66605 MEDIUM
FAST/TOOLS <10.04 - Info Disclosure
CVSS 5.3
CVE-2026-24735 HIGH
Apache Answer <2.0.0 - Info Disclosure
CVSS 7.5
CVE-2025-11598
mObywatel iOS - Info Disclosure
CVE-2025-14317
Crazy Bubble Tea <915-7.4.1 - Info Disclosure
CVE-2026-20834 MEDIUM
Windows Shell < unknown - Path Traversal
CVSS 4.6
CVE-2025-3950 LOW
GitLab CE/EE <18.5.5-18.7.1 - Info Disclosure
CVSS 3.5
CVE-2025-68945 MEDIUM
Gitea <1.21.2 - Info Disclosure
CVSS 5.8
CVE-2025-65857 HIGH
Xiongmai XM530 IP cameras - Info Disclosure
CVSS 7.5
CVE-2025-13008
M-Files Server <25.12.15491.7, 25.8, 25.2, 24.8 - Info Disclosure
CVE-2025-1030 HIGH
Utarit Informatics Services Inc. SoliClub <5.3.7 - Info Disclosure
CVSS 7.5
CVE-2025-34441 HIGH
AVideo <20.1 - Info Disclosure
CVSS 7.5
CVE-2025-10450 HIGH
RTI Connext Professional - Info Disclosure
CVSS 7.5
CVE-2025-0969 MEDIUM
Brizy - Page Builder <2.7.16 - Info Disclosure
CVSS 6.5
CVE-2025-66510 MEDIUM
Nextcloud Server <32.0.1 - Info Disclosure
CVSS 4.5
CVE-2025-66027 MEDIUM
Rallly <4.5.6 - Info Disclosure
CVSS 6.5
CVE-2025-66035
Angular <19.2.16, 20.3.14, 21.0.1 - XSS
CVE-2025-12536 MEDIUM
WordPress SureForms <1.13.2 - Info Disclosure
CVSS 5.3
CVE-2025-11959 HIGH
Premierturk Information Technologies Inc. Excavation Management Inf...
CVSS 8.1
CVE-2025-36131 MEDIUM
IBM Db2 - Info Disclosure
CVSS 4.6
CVE-2025-52602 MEDIUM
HCL BigFix Query - Info Disclosure
CVSS 4.2
CVE-2025-43500 HIGH
iOS <26.1 - Info Disclosure
CVSS 7.5
CVE-2025-43496 HIGH
Apple - Info Disclosure
CVSS 7.5
Details
Vulnerabilities 164