Falhas do tipo CWE-497
334 resultadosCVE-2025-60119MEDIUMWordPress CoSchedule Plugin <= 3.3.11 - Sensitive Data Exposure VulnerabilityEPSS 0.3%CVE-2025-58797MEDIUMWordPress Ninja Charts plugin <= 3.3.5 - Sensitive Data Exposure vulnerabilityEPSS 0.3%CVE-2025-32164MEDIUMWordPress m1.DownloadList plugin <= 0.24 - Sensitive Data Exposure vulnerabilityEPSS 0.3%CVE-2026-0887MEDIUMClickjacking issue, information disclosure in the PDF Viewer componentEPSS 0.3%CVE-2025-48024MEDIUMIn BlueWave Checkmate before 2.1, an authenticated regular user can access sensitive application secrets via the /api/v1/settings endpoint.EPSS 0.3%CVE-2026-41339MEDIUMOpenClaw < 2026.4.2 - Information Disclosure via Gateway Connect SnapshotEPSS 0.3%CVE-2025-49914MEDIUMWordPress Restaurant Menu by MotoPress plugin <= 2.4.7 - Sensitive Data Exposure vulnerabilityEPSS 0.3%CVE-2024-39675HIGHA vulnerability has been identified in RUGGEDCOM RMC30 (All versions < V4.3.10), RUGGEDCOM RMC30NC (All versions < V4.3.10), RUGGEDCOM RP110EPSS 0.3%CVE-2025-59575MEDIUMWordPress MasterStudy LMS plugin <= 3.6.20 - Sensitive Data Exposure vulnerabilityEPSS 0.3%CVE-2025-31062MEDIUMWordPress Wishlist plugin <= 2.1.0 - Sensitive Data Exposure VulnerabilityEPSS 0.3%CVE-2025-32299MEDIUMWordPress QuickCal plugin <= 1.0.15 - Sensitive Data Exposure VulnerabilityEPSS 0.3%CVE-2025-62902MEDIUMWordPress WP Popup Builder plugin <= 1.3.8 - Sensitive Data Exposure vulnerabilityEPSS 0.3%CVE-2026-20691MEDIUMAn authorization issue was addressed with improved state management. This issue is fixed in Safari 26.4, iOS 26.4 and iPadOS 26.4, macOS TahEPSS 0.3%CVE-2025-11545CRITICALExposure of Sensitive System Information to an Unauthorized Control Sphere vulnerability in Sharp Display Solutions projectors allows a attaEPSS 0.3%CVE-2025-57937MEDIUMWordPress WPeMatico RSS Feed Fetcher Plugin <= 2.8.10 - Sensitive Data Exposure VulnerabilityEPSS 0.3%CVE-2025-57916MEDIUMWordPress WP System Information Plugin <= 1.5 - Sensitive Data Exposure VulnerabilityEPSS 0.3%CVE-2025-3506MEDIUMPotentially senitive path exposed via unauthenticated http routeEPSS 0.3%CVE-2024-4008HIGHFDSK Leak in KNX Secure DevicesEPSS 0.3%CVE-2025-49340MEDIUMWordPress Direct Payments WP plugin <= 1.3.2 - Sensitive Data Exposure vulnerabilityEPSS 0.3%CVE-2025-13160MEDIUMIQ Service International|IQ-Support - Exposure of Sensitive InformationEPSS 0.3%