Fallos del tipo CWE-201

333 resultados
CVE-2026-27370HIGHWordPress Chaty plugin <= 3.5.1 - Sensitive Data Exposure vulnerabilityEPSS 0.3%CVE-2026-34888HIGHWordPress Bricksforge plugin <= 3.1.8.4 - Sensitive Data Exposure vulnerabilityEPSS 0.3%CVE-2025-64213HIGHWordPress MasterStudy LMS Pro plugin < 4.7.16 - Sensitive Data Exposure vulnerabilityEPSS 0.3%CVE-2020-37093HIGHNetis E1+ 1.2.32533 - Unauthenticated WiFi Password LeakEPSS 0.3%CVE-2025-65944MEDIUMSentry-Javascript deals with leaked sensitive headers when `sendDefaultPii` is set to `true`EPSS 0.3%CVE-2026-48877MEDIUMWordPress GenerateBlocks plugin <= 2.1.0 - Sensitive Data Exposure vulnerabilityEPSS 0.3%CVE-2025-43768MEDIUMLiferay Portal 7.4.0 through 7.4.3.131, and Liferay DXP 2024.Q4.0 through 2024.Q4.7, 2024.Q3.1 through 2024.Q3.13, 2024.Q2.0 through 2024.Q2EPSS 0.3%CVE-2026-5512MEDIUMImproper authorization vulnerability in GitHub Enterprise Server allowed disclosure of private repository names via mobile upload policy APIEPSS 0.3%CVE-2025-7204MEDIUMExposure of password hashes via API responses in ConnectWise PSAEPSS 0.3%CVE-2026-42384HIGHWordPress Simply Schedule Appointments plugin < 1.6.11.2 - Sensitive Data Exposure vulnerabilityEPSS 0.3%CVE-2025-64218HIGHWordPress Passster plugin <= 4.2.19 - Sensitive Data Exposure vulnerabilityEPSS 0.3%CVE-2024-35690MEDIUMWordPress Widget Options plugin <= 4.0.1 - Subscriber+ User Meta Data Exposure VulnerabilityEPSS 0.3%CVE-2026-40789HIGHWordPress Amelia plugin <= 2.2 - Sensitive Data Exposure vulnerabilityEPSS 0.3%CVE-2025-48261HIGHWordPress MultiVendorX plugin <= 4.2.22 - Sensitive Data Exposure VulnerabilityEPSS 0.3%CVE-2026-42667HIGHWordPress Bookly plugin <= 27.4 - Sensitive Data Exposure vulnerabilityEPSS 0.3%CVE-2026-54841HIGHWordPress Vitepos plugin <= 3.4.2 - Sensitive Data Exposure vulnerabilityEPSS 0.3%CVE-2025-27001MEDIUMWordPress Shipmondo – A complete shipping solution for WooCommerce plugin <= 5.0.3 - Authenticated Arbitrary WordPress Option Disclosure vulnerabilityEPSS 0.3%CVE-2024-32028MEDIUMSensitive query parameters logged by default in OpenTelemetry.Instrumentation http and AspNetCoreEPSS 0.3%CVE-2025-5733MEDIUMModern Events Calendar <= 7.21.9 - Information ExposureEPSS 0.3%CVE-2025-60140MEDIUMWordPress The Tribal Plugin <= 1.3.3 - Sensitive Data Exposure VulnerabilityEPSS 0.3%