CWE-532

Medium likelihood

Insertion of Sensitive Information into Log File

Parent: CWE-538 - Insertion of Sensitive Information into Externally-Accessible File or Directory

The product writes sensitive information to a log file.

1,137 vulnerabilities with CWE-532
CVE-2025-30105 HIGH
Dell XtremIO 6.4.0-22 - Info Disclosure
CVSS 8.8
CVE-2025-26332 HIGH
Dell TechAdvisor 2.6-3.37-30 - Insertion of Sensitive Information into Log File
CVSS 8.8
CVE-2025-43225 MEDIUM
iPadOS < 17.7.9 and macOS < 13.7.7, < 14.7.7, < 15.6 - Sensitive Information Disclosure via Log File
CVSS 5.5
CVE-2025-53649 MEDIUM
SwitchBot App for iOS/Android V6.24-V9.12 - Sensitive Information Exposure via Log File Insertion
CVSS 5.1
CVE-2025-54120 CRITICAL
PCL CE <2.12.0-beta.9 - Info Disclosure
CVE-2025-43485 MEDIUM
Poly Clariti Manager <10.12.2 - Info Disclosure
CVSS 4.5
CVE-2025-7371 MEDIUM
Okta On-Premises Provisioning - Info Disclosure
CVSS 6.8
CVE-2025-52580 LOW
Region PAY <1.5.28 - Info Disclosure
CVSS 2.4
CVE-2025-54319 MEDIUM
Westermo WeOS <5.24.4 - Info Disclosure
CVSS 6.3
CVE-2025-6391 CRITICAL
Brocade ASCG < 3.3.0 - Sensitive Information Exposure via JWT Logging
CVSS 9.1
CVE-2025-51497 MEDIUM
AdGuard plugin <1.11.22 - Info Disclosure
CVSS 5.5
CVE-2025-54064 MEDIUM
Rucio helm-charts - Sensitive Information Exposure via Apache Access Log
CVE-2025-30483 MEDIUM
Dell ECS <3.8.1.5/ObjectScale 4.0.0.0 - Info Disclosure
CVSS 5.5
CVE-2025-53886 MEDIUM
Directus 9.0.0-11.8.0 - Sensitive Information Exposure in WebHook Flow Logs
CVSS 4.5
CVE-2025-53885 MEDIUM
Directus 9.0.0-11.8.0 - Sensitive Information Exposure via Log to Console Operation
CVSS 4.2
CVE-2025-6392 MEDIUM
Brocade SANnav < 2.4.0a - Sensitive Information Disclosure in Audit Logs
CVSS 4.4
CVE-2025-36599 MEDIUM
Dell PowerFlex Manager < 4.6.2.1 - Sensitive Information Disclosure via Log File Insertion
CVSS 4.3
CVE-2025-5464 MEDIUM
Ivanti Connect Secure <22.7R2.8 - Info Disclosure
CVSS 6.5
CVE-2025-5463 MEDIUM
Ivanti Connect/Ivanti Policy <22.7R2.8/<22.7R1.5 - Info Disclosure
CVSS 5.5
CVE-2025-6711 MEDIUM
MongoDB 6.0.0-6.0.20 - Sensitive Information Exposure in Server Logs
CVSS 4.4
CVE-2025-49846 MEDIUM
Wire iOS <3.124.1 - Info Disclosure
CVE-2025-6587 MEDIUM
Docker Desktop <4.43.0 - Info Disclosure
CVE-2025-6624 HIGH
Snyk CLI < 1.1297.3 - Sensitive Information Exposure in Debug Logs
CVSS 7.2
CVE-2025-52893 MEDIUM
OpenBao < 2.3.0 - Sensitive Information Exposure in Error Logs via Malformed Data Processing
CVSS 4.5
CVE-2025-36050 MEDIUM
IBM QRadar SIEM 7.5-7.5.0 Update Package 12 - Sensitive Information Disclosure in Log Files
CVSS 6.2
Details
Vulnerabilities 1,137
Exploit Likelihood Medium