Vulnerabilities > Incomplete Cleanup

DATE CVE VULNERABILITY TITLE RISK
2020-10-07 CVE-2020-13346 Incomplete Cleanup vulnerability in Gitlab
Membership changes are not reflected in ToDo subscriptions in GitLab versions prior to 13.2.10, 13.3.7 and 13.4.2, allowing guest users to access confidential issues through API.
network
low complexity
gitlab CWE-459
6.5
2020-10-02 CVE-2020-5987 Incomplete Cleanup vulnerability in Nvidia Virtual GPU Manager
NVIDIA Virtual GPU Manager contains a vulnerability in the vGPU plugin in which guest-supplied parameters remain writable by the guest after the plugin has validated them, which may lead to the guest being able to pass invalid parameters to plugin handlers, which may lead to denial of service or escalation of privileges.
local
low complexity
nvidia CWE-459
7.8
2020-09-18 CVE-2020-0286 Incomplete Cleanup vulnerability in Google Android 11.0
In Bluetooth AVRCP, there is a possible leak of audio metadata due to residual data.
network
low complexity
google CWE-459
7.5
2020-09-10 CVE-2020-15024 Incomplete Cleanup vulnerability in Avast Antivirus 20.1.5069.562
An issue was discovered in the Login Password feature of the Password Manager component in Avast Antivirus 20.1.5069.562.
local
low complexity
avast CWE-459
5.5
2020-09-08 CVE-2019-14115 Incomplete Cleanup vulnerability in Qualcomm products
u'Information disclosure issue occurs as in current logic as secure touch is released without clearing the display session which can result in user reading the secure input while touch is in non-secure domain as secure display is active' in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables, Snapdragon Wired Infrastructure and Networking in APQ8009, APQ8017, APQ8053, APQ8076, APQ8096AU, APQ8098, Kamorta, MDM9150, MDM9205, MDM9206, MDM9607, MDM9650, MSM8905, MSM8909, MSM8917, MSM8920, MSM8937, MSM8940, MSM8953, MSM8996, MSM8996AU, MSM8998, Nicobar, QCM2150, QCS404, QCS405, QCS605, QCS610, QM215, Rennell, SA415M, SA515M, SA6155P, SC7180, SC8180X, SDA660, SDA845, SDM429, SDM429W, SDM439, SDM450, SDM630, SDM632, SDM636, SDM660, SDM670, SDM710, SDM845, SDM850, SDX24, SDX55, SM6150, SM7150, SM8150, SM8250, SXR1130, SXR2130
local
low complexity
qualcomm CWE-459
5.5
2020-08-11 CVE-2020-0258 Incomplete Cleanup vulnerability in Google Android 10.0
In stopZygoteLocked of AppZygote.java, there is an insufficient cleanup.
local
low complexity
google CWE-459
5.5
2020-07-09 CVE-2020-12414 Incomplete Cleanup vulnerability in Mozilla Firefox
IndexedDB should be cleared when leaving private browsing mode and it is not, the API for WKWebViewConfiguration was being used incorrectly and requires the private instance of this object be deleted when leaving private mode.
network
low complexity
mozilla CWE-459
6.5
2020-06-19 CVE-2020-14451 Incomplete Cleanup vulnerability in Mattermost Mobile 1.26.0
An issue was discovered in Mattermost Mobile Apps before 1.29.0.
network
low complexity
mattermost CWE-459
7.5
2020-06-19 CVE-2019-20850 Incomplete Cleanup vulnerability in Mattermost Mobile
An issue was discovered in Mattermost Mobile Apps before 1.26.0.
network
low complexity
mattermost CWE-459
5.3
2020-06-19 CVE-2019-20849 Incomplete Cleanup vulnerability in Mattermost Mobile
An issue was discovered in Mattermost Mobile Apps before 1.26.0.
network
low complexity
mattermost CWE-459
5.3