CWE-359
Exposure of Private Personal Information to an Unauthorized Actor
The product does not properly prevent a person's private, personal information from being accessed by actors who either (1) are not explicitly authorized to access the information or (2) do not have the implicit consent of the person about whom the information is collected.
196 vulnerabilities with CWE-359
CVE-2024-40796
MEDIUM
macOS Sonoma <14.6, iOS/iPadOS <16.7.9, macOS Monterey <12.7.6, mac...
CVSS 5.3
CVE-2024-27881
MEDIUM
macOS 12.0-12.7.5, 13.0-13.6.7, 14.0-14.5 - Unprotected User Contact Data Exposure via Log Entries
CVSS 5.3
CVE-2024-38103
MEDIUM
Microsoft Edge < 127.0.2651.74 - Information Disclosure
CVSS 5.9
CVE-2024-37533
LOW
IBM InfoSphere Information Server 11.7 - Info Disclosure
CVSS 2.4
CVE-2024-30321
MEDIUM
SIMATIC PCS 7 <V9.1 SP2 UC05 - Info Disclosure
CVSS 5.9
CVE-2024-36682
HIGH
PrestaShop <=1.8.8 - Info Disclosure
CVSS 7.5
CVE-2024-36677
HIGH
Weblir Login as customer PRO <1.2.7 - Info Disclosure
CVSS 7.5
CVE-2024-27850
MEDIUM
Safari < 17.5 - User Fingerprinting via Noise Injection Algorithm
CVSS 6.5
CVE-2024-30056
HIGH
Microsoft Edge Chromium < 124.0.2478.109 - Exposure of Private Personal Information
CVSS 7.1
CVE-2024-4767
MEDIUM
Firefox <126, Firefox ESR <115.11, Thunderbird <115.11 - Info Discl...
CVSS 4.3
CVE-2024-33271
HIGH
FME Modules eventsmanager <4.4.0 - Info Disclosure
CVSS 7.5
CVE-2024-29987
MEDIUM
Microsoft Edge Chromium < 124.0.2478.51 - Information Disclosure
CVSS 6.5
CVE-2024-29986
MEDIUM
Microsoft Edge Chromium for Android < 124.0.2478.51 - Exposure of Private Personal Information
CVSS 5.4
CVE-2024-29888
MEDIUM
Saleor 3.14.56-3.14.61 - Unauthorized Exposure of Private Personal Information via Click-and-Collect Address Overwrite
CVSS 4.2
CVE-2024-28387
HIGH
axonaut < 3.2.0 - Sensitive Information Exposure via log.txt
CVSS 7.5
CVE-2024-26192
HIGH
Microsoft Edge Chromium < 122.0.2365.52 - Information Disclosure
CVSS 8.2
CVE-2024-23211
LOW
Safari < 17.3 - Unauthorized Exposure of Private Browsing Activity
CVSS 3.3
CVE-2023-45721
MEDIUM
HCL Domino Leap 1.1-1.1.3 - Unauthenticated Exposure of Private Personal Information
CVSS 5.3
CVE-2023-45720
MEDIUM
HCL Leap < 9.3.5 - Unauthenticated Exposure of Private Personal Information via Insufficient Default Configuration
CVSS 5.3
CVE-2023-44255
MEDIUM
Fortinet FortiManager <7.4.2, FortiAnalyzer <7.4.2, FortiAnalyzer-B...
CVSS 4.1
CVE-2023-50053
HIGH
Foundation.app Foundation platform 1.0 - Info Disclosure
CVSS 7.6
CVE-2023-6695
MEDIUM
Beaver Themer <1.4.9 - Info Disclosure
CVSS 6.5
CVE-2023-48680
MEDIUM
Acronis Cyber Protect <16 - Info Disclosure
CVSS 5.5
CVE-2023-7014
MEDIUM
Molongui Authorship < 4.7.4 - Unauthenticated Sensitive Information Exposure via ma_debu Parameter
CVSS 5.3
CVE-2023-6630
MEDIUM
Contact Form 7 - Insecure Direct Object Reference
CVSS 4.3
Details
Vulnerabilities
196