Fallos del tipo CWE-497

334 resultados
CVE-2026-24222HIGHNVIDIA NeMoClaw contains a vulnerability in the sandbox environment initialization component, where a remote attacker could cause improper aEPSS 0.4%CVE-2025-26730HIGHWordPress Macro Calculator with Admin Email Optin & Data plugin <= 1.0 - Multiple Vulnerabilities vulnerabilityEPSS 0.4%CVE-2026-49068HIGHWordPress Coupon Affiliates plugin <= 7.8.1 - Sensitive Data Exposure vulnerabilityEPSS 0.4%CVE-2025-4364HIGHExposure of Sensitive System Information to an Unauthorized Control SphereEPSS 0.4%CVE-2025-31045HIGHWordPress elfsight Contact Form widget plugin <= 2.3.1 - Sensitive Data Exposure VulnerabilityEPSS 0.4%CVE-2025-58579MEDIUMUsername Disclosure Through Missing AuthenticationEPSS 0.4%CVE-2026-42047HIGHInngest TypeScript SDK exposes environment variables via serve() handler on unhandled HTTP methodsEPSS 0.4%CVE-2026-22915MEDIUMAn attacker with low privileges may be able to read files from specific directories on the device, potentially exposing sensitive informatioEPSS 0.4%CVE-2024-39740MEDIUMIBM Datacap Navigator information disclosureEPSS 0.4%CVE-2024-40706MEDIUMIBM InfoSphere Information Server information disclosureEPSS 0.4%CVE-2024-9470MEDIUMCortex XSOAR: Information Disclosure VulnerabilityEPSS 0.4%CVE-2024-10940MEDIUMExposure of Sensitive System Information via ImagePromptTemplate in langchain-ai/langchainEPSS 0.4%CVE-2024-51770HIGHAn information disclosure vulnerability exists in HPE AutoPass License Server (APLS) prior to 9.17.EPSS 0.4%CVE-2024-3774MEDIUMaEnrich Technology a+HRD - Exposure of Sensitive DataEPSS 0.4%CVE-2025-68046MEDIUMWordPress Contact Form & Lead Form Elementor Builder plugin <= 2.0.1 - Sensitive Data Exposure vulnerabilityEPSS 0.4%CVE-2024-49252MEDIUMWordPress leyka plugin <=3.31.6 - Broken Access Control vulnerabilityEPSS 0.4%CVE-2025-67954MEDIUMWordPress Salon booking system plugin <= 10.30.3 - Sensitive Data Exposure vulnerabilityEPSS 0.4%CVE-2025-1212MEDIUMExposure of Sensitive System Information to an Unauthorized Control Sphere in GitLabEPSS 0.4%CVE-2025-26758MEDIUMWordPress Spotlight Social Feeds plugin <= 1.7.1 - Sensitive Data Exposure vulnerabilityEPSS 0.4%CVE-2026-27494HIGHn8n has Arbitrary File Read via Python Code Node Sandbox EscapeEPSS 0.4%