Vulnerabilities > Information Exposure Through an Error Message

DATE CVE VULNERABILITY TITLE RISK
2024-11-18 CVE-2024-48896 Information Exposure Through an Error Message vulnerability in Moodle
A vulnerability was found in Moodle.
network
low complexity
moodle CWE-209
4.3
2024-11-15 CVE-2021-3986 Information Exposure Through an Error Message vulnerability in Janeczku Calibre-Web
A vulnerability in janeczku/calibre-web allows unauthorized users to view the names of private shelves belonging to other users.
network
low complexity
janeczku CWE-209
4.3
2024-11-06 CVE-2024-52043 Information Exposure Through an Error Message vulnerability in Humhub
Generation of Error Message Containing Sensitive Information in HumHub GmbH & Co.
network
low complexity
humhub CWE-209
5.3
2024-11-04 CVE-2024-51560 Information Exposure Through an Error Message vulnerability in 63Moons Aero and Wave 2.0
This vulnerability exists in the Wave 2.0 due to improper exception handling for invalid inputs at certain API endpoint.
network
low complexity
63moons CWE-209
4.3
2024-10-23 CVE-2023-50355 Information Exposure Through an Error Message vulnerability in Hcltech Sametime 11.6/12.0/12.0.2
HCL Sametime is impacted by the error messages containing sensitive information.
network
low complexity
hcltech CWE-209
5.3
2024-10-17 CVE-2024-45713 SolarWinds Kiwi CatTools is susceptible to a sensitive data disclosure vulnerability when a non-default setting has been enabled for troubleshooting purposes.
local
high complexity
CWE-209
5.1
2024-10-09 CVE-2024-7038 Information Exposure Through an Error Message vulnerability in Openwebui Open Webui
An information disclosure vulnerability exists in open-webui version 0.3.8.
network
low complexity
openwebui CWE-209
2.7
2024-10-02 CVE-2024-47803 Information Exposure Through an Error Message vulnerability in Jenkins
Jenkins 2.478 and earlier, LTS 2.462.2 and earlier does not redact multi-line secret values in error messages generated for form submissions involving the `secretTextarea` form field.
network
low complexity
jenkins CWE-209
4.3
2024-09-25 CVE-2024-7426 Information Exposure Through an Error Message vulnerability in Peepso
The Community by PeepSo – Social Network, Membership, Registration, User Profiles plugin for WordPress is vulnerable to Full Path Disclosure in all versions up to, and including, 6.4.6.0.
network
low complexity
peepso CWE-209
5.3
2024-09-13 CVE-2024-6544 Information Exposure Through an Error Message vulnerability in Coffee2Code Custom Post Limits
The Custom Post Limits plugin for WordPress is vulnerable to full path disclosure in all versions up to, and including, 4.4.1.
network
low complexity
coffee2code CWE-209
5.3