CWE-532

Medium likelihood

Insertion of Sensitive Information into Log File

Parent: CWE-538 - Insertion of Sensitive Information into Externally-Accessible File or Directory

The product writes sensitive information to a log file.

1,137 vulnerabilities with CWE-532
CVE-2025-27555 MEDIUM
Apache Airflow < 2.11.1 - Authenticated Sensitive Information Exposure in Audit Logs
CVSS 6.5
CVE-2025-11547 HIGH
AXIS Camera Station Pro - Privilege Escalation
CVSS 7.8
CVE-2025-15332 MEDIUM
Tanium Threat Response 4.5.0-4.5.250 - Information Disclosure via Log File Insertion
CVSS 4.9
CVE-2025-13925 MEDIUM
IBM Aspera Console 3.4.7 - Sensitive Information Exposure in Log Files
CVSS 4.9
CVE-2025-59355 MEDIUM
Apache Linkis 1.0.0-1.7.0 - Sensitive Information Disclosure in HiveUtils Base64 Decode Error Log
CVSS 6.5
CVE-2025-43508 MEDIUM
macOS < 26.1 - Unprotected User Data Exposure via Logging Issue
CVSS 5.5
CVE-2025-68675 HIGH
Apache Airflow <3.1.6 - Info Disclosure
CVSS 7.5
CVE-2025-68919 MEDIUM
Fujitsu Fsas Technologies ETERNUS SF - Info Disclosure
CVSS 5.6
CVE-2025-66910 MEDIUM
Turms Server v0.10.0-SNAPSHOT - Info Disclosure
CVSS 6.0
CVE-2025-14437 HIGH
Hummingbird Performance <3.18.0 - Info Disclosure
CVSS 7.5
CVE-2025-46277 LOW
macOS Tahoe <26.2 - Info Disclosure
CVSS 3.3
CVE-2025-43475 MEDIUM
iPadOS < 26.2 - Unprotected User Data Exposure via Logging Issue
CVSS 5.5
CVE-2025-13321 LOW
Mattermost Desktop App < 6.0.0 - Sensitive Information Exposure via Log File
CVSS 3.3
CVE-2025-14432 MEDIUM
Microsoft Teams Admin Center - Info Disclosure
CVSS 4.9
CVE-2025-43517 LOW
macOS < 14.8.3, < 15.7.3, < 26.2 - Unprotected User Data Exposure via Log File
CVSS 3.3
CVE-2025-13743 HIGH
Docker Desktop 4.51.0-4.53.9 - Sensitive Information Exposure in Diagnostics Logs
CVSS 7.5
CVE-2025-64650 MEDIUM
IBM Storage Defender Resiliency Service 2.0.0-2.0.18 - Sensitive Credential Disclosure in Log Files
CVSS 6.5
CVE-2025-12996 MEDIUM
Medtronic CareLink Network <December 4, 2025 - Info Disclosure
CVSS 4.1
CVE-2025-14010 MEDIUM
community.general - Sensitive Credential Exposure via Verbose Debug Output
CVSS 5.5
CVE-2025-66411 HIGH
Coder <2.26.5, 2.27.7, 2.28.4 - Info Disclosure
CVSS 7.8
CVE-2025-13611 LOW
GitLab 13.2-18.5.4 and 18.6-18.6.2 - Authenticated Sensitive Token Exposure via Log File Insertion
CVSS 2.0
CVE-2025-20373 LOW
Splunk Add-on for Palo Alto Networks <2.0.2 - Info Disclosure
CVSS 2.7
CVE-2025-63729 CRITICAL
Syrotech SY-GPON-1110-WDONT SYRO_3.7L_3.1.02-240517 - Info Disclosure
CVSS 9.0
CVE-2025-11446 MEDIUM
upKeeper Manager <5.2.12 - Info Disclosure
CVSS 6.5
CVE-2025-54971 MEDIUM
Fortinet FortiADC 6.2.0-7.4.0 - Sensitive Information Exposure via Log File
CVSS 4.3
Details
Vulnerabilities 1,137
Exploit Likelihood Medium