CWE-532

Medium likelihood

Insertion of Sensitive Information into Log File

Parent: CWE-538 - Insertion of Sensitive Information into Externally-Accessible File or Directory

The product writes sensitive information to a log file.

1,137 vulnerabilities with CWE-532
CVE-2025-50200 MEDIUM
RabbitMQ < 4.0.8 - Sensitive Information Disclosure in Log Files
CVSS 5.5
CVE-2025-2327 MEDIUM
Pure Storage FlashArray <=6.8.4 Key Encryption Key Exposure in Log Files
CVE-2025-36573 HIGH
Dell Pro Smart Dock SD25/SD25TB4 < 01.00.08.01 - Information Disclosure via Log File Insertion
CVSS 7.1
CVE-2025-49009 MEDIUM
Para < 1.50.8 - Sensitive Information Exposure in FacebookAuthFilter Log
CVSS 6.2
CVE-2025-48493 MEDIUM
Yii 2 Redis Extension <2.0.20 - Info Disclosure
CVSS 6.5
CVE-2025-48955 MEDIUM
Para < 1.50.8 - Sensitive Information Exposure in Log Files
CVSS 6.2
CVE-2025-31199 MEDIUM
iPadOS < 18.4 - Sensitive Information Disclosure via Log File Insertion
CVSS 5.5
CVE-2025-46777 LOW
Fortinet FortiPortal <7.4.0 - Info Disclosure
CVSS 2.3
CVE-2025-48374 MEDIUM
zot < 1.4.4-0.20250522160828-8a99a3ed231f - Sensitive Information Exposure in Logs via Keycloak OIDC Client Secret
CVE-2025-26864 HIGH
Apache IoTDB 0.10.0-1.3.3 and 2.0.1-beta - Sensitive Information Exposure via OpenIdAuthorizer
CVSS 7.5
CVE-2025-26795 HIGH
Apache IoTDB JDBC Driver 0.10.0-1.3.3 and 2.0.1-beta - Sensitive Information Exposure via Log File Insertion
CVSS 7.5
CVE-2025-22246 LOW
Cloud Foundry UAA <7.32 - Info Disclosure
CVSS 3.0
CVE-2025-31213 HIGH
iPadOS < 17.7.7 and macOS < 13.7.6, < 14.7.6, < 15.5 - Sensitive Information Disclosure in Log Files
CVSS 7.6
CVE-2025-3911 MEDIUM
Docker Desktop <4.40.9 - Info Disclosure
CVE-2025-4090 MEDIUM
Firefox and Thunderbird < 138.0 - Sensitive Information Exposure via Logcat
CVSS 5.3
CVE-2025-46329 LOW
libsnowflakeclient <2.2.0 - Info Disclosure
CVSS 3.3
CVE-2025-46614 LOW
Snowflake ODBC Driver <3.7.0 - Info Disclosure
CVSS 3.3
CVE-2025-46432 MEDIUM
JetBrains TeamCity <2025.03.1 - Info Disclosure
CVSS 4.3
CVE-2025-2092 HIGH
Checkmk <2.3.0p29, <2.2.0p41 and <=2.1.0p49 - Sensitive Information Disclosure in Log Files
CVSS 7.5
CVE-2025-2300 MEDIUM
Hitachi Ops Center <11.0.4 - Info Disclosure
CVSS 5.5
CVE-2025-24651 MEDIUM
WebToffee WordPress Backup & Migration <1.5.3 - Info Disclosure
CVSS 5.9
CVE-2025-32382 LOW
Metabase Sensitive Information Disclosure in Log Files
CVE-2025-32016 MEDIUM
Microsoft.Identity.Web 3.2.0-3.8.1 - Sensitive Information Exposure in Service Logs
CVSS 4.7
CVE-2025-27391 MEDIUM
Apache ActiveMQ Artemis <2.40.0 - Info Disclosure
CVSS 6.5
CVE-2025-30677 MEDIUM
Apache Pulsar < 3.0.11, 3.3.6, 4.0.4 - Sensitive Information Exposure in Kafka Connector Logs
CVSS 6.5
Details
Vulnerabilities 1,137
Exploit Likelihood Medium