Vulnerabilities > Information Exposure

DATE CVE VULNERABILITY TITLE RISK
2023-12-13 CVE-2023-49877 Information Exposure vulnerability in IBM products
IBM System Storage Virtualization Engine TS7700 3957-VEC, 3948-VED and 3957-VEC could allow a remote authenticated user to obtain sensitive information, caused by improper filtering of URLs.
network
low complexity
ibm CWE-200
4.3
2023-12-12 CVE-2023-48225 Information Exposure vulnerability in LAF
Laf is a cloud development platform.
network
low complexity
laf CWE-200
critical
9.1
2023-12-12 CVE-2023-49274 Information Exposure vulnerability in Umbraco CMS
Umbraco is an ASP.NET content management system (CMS).
network
low complexity
umbraco CWE-200
5.3
2023-11-23 CVE-2023-47668 Information Exposure vulnerability in Liquidweb Restrict Content
Exposure of Sensitive Information to an Unauthorized Actor vulnerability in StellarWP Membership Plugin – Restrict Content plugin <= 3.2.7 versions.
network
low complexity
liquidweb CWE-200
7.5
2023-11-22 CVE-2023-6264 Information Exposure vulnerability in Devolutions Server
Information leak in Content-Security-Policy header in Devolutions Server 2023.3.7.0 allows an unauthenticated attacker to list the configured Devolutions Gateways endpoints.
network
low complexity
devolutions CWE-200
5.3
2023-11-22 CVE-2023-5983 Information Exposure vulnerability in Botanikyazilim Pharmacy Automation
Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Botanik Software Pharmacy Automation allows Retrieve Embedded Sensitive Data.This issue affects Pharmacy Automation: before 2.1.133.0.
network
low complexity
botanikyazilim CWE-200
7.5
2023-11-10 CVE-2023-45816 Information Exposure vulnerability in Discourse
Discourse is an open source platform for community discussion.
local
low complexity
discourse CWE-200
3.3
2023-11-09 CVE-2023-43791 Information Exposure vulnerability in Humansignal Label Studio
Label Studio is a multi-type data labeling and annotation tool with standardized output format.
network
low complexity
humansignal CWE-200
8.8
2023-10-27 CVE-2022-3611 Information Exposure vulnerability in Lenovo APP Store APP
An information disclosure vulnerability has been identified in the Lenovo App Store which may allow some applications to gain unauthorized access to sensitive user data used by other unrelated applications.
network
low complexity
lenovo CWE-200
7.5
2023-10-20 CVE-2023-4796 Information Exposure vulnerability in Booster for Woocommerce
The Booster for WooCommerce for WordPress is vulnerable to Information Disclosure via the 'wcj_wp_option' shortcode in versions up to, and including, 7.1.0 due to insufficient controls on the information retrievable via the shortcode.
network
low complexity
booster CWE-200
4.3