CWE-359

Exposure of Private Personal Information to an Unauthorized Actor

Parent: CWE-200 - Exposure of Sensitive Information to an Unauthorized Actor

The product does not properly prevent a person's private, personal information from being accessed by actors who either (1) are not explicitly authorized to access the information or (2) do not have the implicit consent of the person about whom the information is collected.

174 vulnerabilities with CWE-359
CVE-2025-51586 LOW
PrestaShop <8.2.1 - Info Disclosure
CVSS 3.7
CVE-2025-41685 MEDIUM
Sunny Portal - Info Disclosure
CVSS 6.5
CVE-2025-53765 MEDIUM
Azure Stack - Info Disclosure
CVSS 4.4
CVE-2025-54125 MEDIUM
XWiki Platform <17.1.0 - Info Disclosure
CVSS 6.5
CVE-2025-54124 MEDIUM
XWiki Platform <17.1.0 - Info Disclosure
CVSS 6.5
CVE-2025-43259 MEDIUM
macOS <15.6-13.7.7 - Info Disclosure
CVSS 4.6
CVE-2025-43227 HIGH
Safari <18.6 - Info Disclosure
CVSS 7.5
CVE-2025-43217 MEDIUM
iPadOS <17.7.9 - Info Disclosure
CVSS 4.0
CVE-2025-31276 MEDIUM
Apple Ipados < 17.7.9 - Denial of Service
CVSS 5.3
CVE-2025-53625 HIGH
MediaWiki <3.6.4 - Info Disclosure
CVE-2025-53374 MEDIUM
Dokploy <v0.23.6 - Info Disclosure
CVSS 4.3
CVE-2025-6017 MEDIUM
Red Hat Advanced Cluster Management <2.10.7-2.12.4 - Info Disclosure
CVSS 5.5
CVE-2025-49715 HIGH
Dynamics 365 FastTrack Implementation Assets - Info Disclosure
CVSS 7.5
CVE-2025-49134 MEDIUM
Weblate <5.12 - Info Disclosure
CVSS 5.3
CVE-2025-5334 HIGH
Devolutions Remote Desktop Manager - Information Disclosure
CVSS 7.5
CVE-2025-0679 MEDIUM
GitLab CE/EE <17.10.7-18.0.1 - Info Disclosure
CVSS 4.3
CVE-2025-3035 MEDIUM
Firefox < 137 - Info Disclosure
CVSS 5.3
CVE-2025-26816 MEDIUM
Intrexx Portal Server <12.0.2 - Info Disclosure
CVSS 6.5
CVE-2025-27080 MEDIUM
AOS-CX - Info Disclosure
CVSS 6.0
CVE-2025-25042 MEDIUM
AOS-CX - Info Disclosure
CVSS 4.3
CVE-2025-1939 LOW
Android - Info Disclosure
CVSS 3.9
CVE-2025-20060 HIGH
Dario Health - Info Disclosure
CVSS 7.5
CVE-2025-20615 MEDIUM
Qardio Arm iOS - Info Disclosure
CVSS 6.2
CVE-2025-0683 MEDIUM
Contec Health CMS8000 Patient Monitor - Info Disclosure
CVSS 5.9
CVE-2025-24355 HIGH
Updatecli <0.93.0 - Info Disclosure
CVSS 7.1
Details
Vulnerabilities 174