CWE-377

Insecure Temporary File

Parent: CWE-668 - Exposure of Resource to Wrong Sphere

Creating and using insecure temporary files can leave application and system data vulnerable to attack.

81 vulnerabilities with CWE-377
CVE-2026-25701
openSUSE sdbootutil - Insecure Temp File
CVE-2026-20649 HIGH
Apple <26.3 - Info Disclosure
CVSS 7.5
CVE-2026-20618 MEDIUM
macOS Tahoe <26.3 - Info Disclosure
CVSS 5.5
CVE-2025-14614 MEDIUM
Altera Quartus Prime <24.1 - Insecure Temp File
CVSS 6.7
CVE-2025-14612 MEDIUM
Quartus Prime Pro <25.1.1 - Info Disclosure
CVSS 6.7
CVE-2025-66625 MEDIUM
Umbraco <13.12.0 - Info Disclosure
CVSS 4.9
CVE-2025-14307 HIGH
Robocode 1.9.3.6 - Code Injection
CVSS 8.1
CVE-2025-46369 HIGH
Dell Alienware Command Center <6.10.15.0 - Privilege Escalation
CVSS 7.8
CVE-2025-46368 MEDIUM
Dell Alienware Command Center <6.10.15.0 - Info Disclosure
CVSS 6.6
CVE-2025-7707 HIGH
Llama_index 0.12.33 - Info Disclosure
CVSS 7.8
CVE-2025-61659 MEDIUM
bash-git-prompt <2.7.1 - Info Disclosure
CVSS 6.8
CVE-2025-34194 HIGH
Vasion Virtual Appliance Application - Symlink Following
CVSS 7.8
CVE-2025-9474 MEDIUM
Mihomo Party <1.8.1 - Info Disclosure
CVSS 4.5
CVE-2015-0849 LOW
pycode-browser <1.0 - Info Disclosure
CVSS 3.9
CVE-2024-49506
System <non-default config> - DoS/Info Disclosure
CVE-2024-10372 MEDIUM
chidiwilliams buzz <1.1.0 - Info Disclosure
CVSS 4.5
CVE-2024-6654
Products for macOS - DoS
CVE-2024-34490 MEDIUM
Maxima <5.47.0 - Info Disclosure
CVSS 5.1
CVE-2024-2313 LOW
bpftrace - Privilege Escalation
CVSS 2.8
CVE-2024-23287 MEDIUM
Apple Ipados < 17.4 - Denial of Service
CVSS 5.5
CVE-2024-22236 LOW
Spring Cloud Contract <4.1.1, <4.0.5, <3.1.10 - Info Disclosure
CVSS 3.3
CVE-2023-49347 MEDIUM
Budgie Extras Windows Previews - Info Disclosure
CVSS 6.0
CVE-2023-49346 MEDIUM
Budgie Extras WeatherShow - Info Disclosure
CVSS 6.0
CVE-2023-49345 MEDIUM
Budgie Extras Takeabreak - Info Disclosure
CVSS 6.0
CVE-2023-49344 MEDIUM
Budgie Extras Window Shuffler - Info Disclosure
CVSS 6.0
Details
Vulnerabilities 81