Vulnerabilities > Information Exposure

DATE CVE VULNERABILITY TITLE RISK
2023-07-06 CVE-2023-35934 Information Exposure vulnerability in multiple products
yt-dlp is a command-line program to download videos from video sites.
8.2
2023-06-27 CVE-2023-30993 Information Exposure vulnerability in IBM Cloud PAK for Security
IBM Cloud Pak for Security (CP4S) 1.9.0.0 through 1.9.2.0 could allow an attacker with a valid API key for one tenant to access data from another tenant's account.
network
low complexity
ibm CWE-200
7.5
2023-06-27 CVE-2022-34352 Information Exposure vulnerability in IBM Qradar Security Information and Event Manager 7.5.0
IBM QRadar SIEM 7.5.0 is vulnerable to information exposure allowing a delegated Admin tenant user with a specific domain security profile assigned to see data from other domains.
network
low complexity
ibm CWE-200
6.5
2023-06-27 CVE-2023-34098 Information Exposure vulnerability in Shopware
Shopware is an open source e-commerce software.
network
low complexity
shopware CWE-200
5.3
2023-06-23 CVE-2023-34466 Information Exposure vulnerability in Xwiki
XWiki Platform is a generic wiki platform offering runtime services for applications built on top of it.
network
low complexity
xwiki CWE-200
4.3
2023-06-22 CVE-2023-25499 Information Exposure vulnerability in Vaadin
When adding non-visible components to the UI in server side, content is sent to the browser in Vaadin 10.0.0 through 10.0.22, 11.0.0 through 14.10.0, 15.0.0 through 22.0.28, 23.0.0 through 23.3.12, 24.0.0 through 24.0.5 and 24.1.0.alpha1 to 24.1.0.beta1, resulting in potential information disclosure.
network
low complexity
vaadin CWE-200
6.5
2023-06-22 CVE-2023-25500 Information Exposure vulnerability in Vaadin
Possible information disclosure in Vaadin 10.0.0 to 10.0.23, 11.0.0 to 14.10.1, 15.0.0 to 22.0.28, 23.0.0 to 23.3.13, 24.0.0 to 24.0.6, 24.1.0.alpha1 to 24.1.0.rc2, resulting in potential information disclosure of class and method names in RPC responses by sending modified requests.
network
low complexity
vaadin CWE-200
4.3
2023-06-15 CVE-2023-34242 Information Exposure vulnerability in Cilium
Cilium is a networking, observability, and security solution with an eBPF-based dataplane.
network
low complexity
cilium CWE-200
5.3
2023-06-15 CVE-2023-29287 Information Exposure vulnerability in Adobe Commerce and Magento
Adobe Commerce versions 2.4.6 (and earlier), 2.4.5-p2 (and earlier) and 2.4.4-p3 (and earlier) are affected by an Information Exposure vulnerability that could lead to a security feature bypass.
network
low complexity
adobe CWE-200
5.3
2023-06-14 CVE-2022-47184 Information Exposure vulnerability in multiple products
Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Apache Software Foundation Apache Traffic Server.This issue affects Apache Traffic Server: 8.0.0 to 9.2.0.
network
low complexity
apache debian CWE-200
7.5