VulnSea

CWE-204

CVEs classified under CWE-204, newest first.

23 CVEsRSS

CVE-2026-89173Medium· 5.3
1w ago

Smart Video Intercom System developed by Kingdom Communication Associated has a Sensitive Data Exposure vulnerability

Smart Video Intercom System developed by Kingdom Communication Associated has a Sensitive Data Exposure vulnerability. Unauthenticated remote attackers can enumerate valid user accounts by exploiting differences in system responses.

SunlitKingdom Communication Associated · EH3040EPSS 0.26%via NVD
CVE-2026-9161Medium· 5.3
1w ago

Observable response discrepancy vulnerability in DernekPlus Website Template allows Account Footprinting. This issue affects Website Template: through 10092026. NOTE: The vendor was contacted early about this disclosure but did not resp…

Observable response discrepancy vulnerability in DernekPlus Website Template allows Account Footprinting. This issue affects Website Template: through 10092026. NOTE: The vendor was contacted early about this disclosure but did not resp…

SunlitDernekPlus · Website TemplateEPSS 0.20%via NVD
CVE-2026-86758Medium· 6.5
1w ago

Snipe-IT before 8.7.0 fails to properly enforce the viewKeys authorization gate in CSV export and API index endpoints, allowing authenticated users with only licenses.view permission to access product keys

Snipe-IT before 8.7.0 fails to properly enforce the viewKeys authorization gate in CSV export and API index endpoints, allowing authenticated users with only licenses.view permission to access product keys. Attackers can download all lic…

Sunlitsnipeitapp · snipe-itEPSS 0.24%via NVD
CVE-2026-19205High· 7.5
2w ago

Observable response discrepancy vulnerability in GastroMenum GastroMenum Web Panel allows Account Footprinting. This issue affects GastroMenum Web Panel: before 31.08.2026.

Observable response discrepancy vulnerability in GastroMenum GastroMenum Web Panel allows Account Footprinting. This issue affects GastroMenum Web Panel: before 31.08.2026.

TwilightEPSS 0.24%via NVD
CVE-2026-19080High· 7.5
2w ago

Observable response discrepancy vulnerability in Menulux Software Inc

Observable response discrepancy vulnerability in Menulux Software Inc. Menulux Portal allows Account Footprinting. This issue affects Menulux Portal: before 20260903211448.

TwilightEPSS 0.30%via NVD
CVE-2026-84307Low· 3.7
2w ago

Filament is a collection of full-stack components for accelerated Laravel development

Filament is a collection of full-stack components for accelerated Laravel development. From 4.0.0 until 4.12.5 and 5.7.5, packages/panels/src/Auth/Pages/Login.php presents the multi-factor authentication challenge before evaluating canAc…

Sunlitfilament · filament/filamentEPSS 0.29%via NVD
CVE-2026-75575Medium· 5.3
3w ago

Rocket.Chat exposes the sendForgotPasswordEmail Meteor method without a DDP rate limit, so an unauthenticated caller may invoke it as often as it likes

Rocket.Chat exposes the sendForgotPasswordEmail Meteor method without a DDP rate limit, so an unauthenticated caller may invoke it as often as it likes. The method is reachable over DDP and over the HTTP route POST /api/v1/method.callAno…

SunlitRocketChat · Rocket.ChatEPSS 0.23%via NVD
CVE-2026-27462High· 7.5
1mo ago

Combodo iTop is a web based IT service management tool

Combodo iTop is a web based IT service management tool. Prior to 3.2.3, iTop returns different responses for valid/invalid usernames depending on multiple factors in the reset password mechanism, leading to user enumeration. This issue h…

TwilightEPSS 0.31%via NVD
CVE-2026-66002None
1mo ago

Frappe is a full-stack web application framework

Frappe is a full-stack web application framework. Prior to 15.115.0 and 16.27.0, the public request-data web form and PersonalDataDownloadRequest class in frappe/website/doctype/personal_data_download_request/personal_data_download_reque…

SunlitEPSS 0.47%via NVD
CVE-2026-69519High· 8.6
1mo ago

Azure Stack HCI Information Disclosure Vulnerability

Observable response discrepancy in Azure Stack HCI allows an unauthorized attacker to disclose information over a network.

TwilightMicrosoft · Azure Stack HCIEPSS 0.57%via CVEORG
GHSA-8fxq-53rx-ph5fLow· 3.7
1mo ago

Coder: Login endpoint user enumeration via timing-defense placeholder in password comparison

Coder: Login endpoint user enumeration via timing-defense placeholder in password comparison

Sunlitcoder · github.com/coder/coder/v2via GHSA
CVE-2026-54739None
1mo ago

Lemmy is a link aggregator and forum for the fediverse

Lemmy is a link aggregator and forum for the fediverse. Prior to 0.19.19 and 1.0.0-beta.1, Lemmy's login endpoint in crates/api/api/src/local_user/login.rs returns different errors depending on whether the username_or_email value exists.…

SunlitEPSS 0.43%via NVD
CVE-2026-14672Medium· 5.3
1mo ago

Observable response discrepancy in PostgreSQL SCRAM authentication allows an unauthenticated user to test the existence of a user via observing the SCRAM iteration count

Observable response discrepancy in PostgreSQL SCRAM authentication allows an unauthenticated user to test the existence of a user via observing the SCRAM iteration count. This requires the probed user to have a non-default scram_iterati…

Sunlitpostgresql · postgresqlEPSS 0.25%via NVD
CVE-2026-73306Medium· 5.3
1mo ago

Budibase is an open-source low-code platform

Budibase is an open-source low-code platform. Prior to 3.39.25, POST /api/global/auth/:tenantId/login incremented the failure counter in packages/worker/src/api/controllers/global/auth.ts only for existing users, while packages/worker/sr…

SunlitEPSS 0.42%via NVD
CVE-2026-72588Medium· 5.3
1mo ago

A user enumeration vulnerability in bluewave-labs/Checkmate through 2.1.0 allows an unauthenticated remote attacker to determine whether a given email address is registered

A user enumeration vulnerability in bluewave-labs/Checkmate through 2.1.0 allows an unauthenticated remote attacker to determine whether a given email address is registered. The POST /api/v1/auth/recovery/request endpoint returns HTTP 20…

SunlitEPSS 0.25%via NVD
CVE-2026-53947Medium· 5.3
1mo ago

Ghost: Member existence leak via magic link sign-in response

Ghost: Member existence leak via magic link sign-in response

Sunlitghost · ghostEPSS 0.34%via GHSA
CVE-2026-54768Medium
1mo ago

WPGraphQL provides a GraphQL API for WordPress sites

WPGraphQL provides a GraphQL API for WordPress sites. From 2.0.0 until 2.15.1, the deprecated user field on SendPasswordResetEmailPayload lets an unauthenticated caller distinguish existing author-class accounts through the sendPasswordR…

Sunlitwp-graphql · wp-graphql/wp-graphqlEPSS 0.34%via NVD
GHSA-cr7p-cr3q-h5cmMedium· 5.3
1mo ago

Budibase: Account Enumeration via Login Lockout Response Differential

Budibase: Account Enumeration via Login Lockout Response Differential

Sunlitbudibase · @budibase/servervia GHSA
GHSA-gq4g-fpc9-vjfqLow
2mo ago

Webauthn: SimpleFakeCredentialGenerator with an empty secret produces predictable fake credentials, weakening username enumeration protection

Webauthn: SimpleFakeCredentialGenerator with an empty secret produces predictable fake credentials, weakening username enumeration protection

Sunlitweb-auth · web-auth/webauthn-libvia GHSA
GHSA-j7f5-gfqm-pcx3Medium
2mo ago

Pterodactyl Panel: Client email change endpoint allows enumeration of accounts in system

Pterodactyl Panel: Client email change endpoint allows enumeration of accounts in system

Sunlitpterodactyl · pterodactyl/panelvia GHSA
CVE-2026-8242Low· 3.7
4mo ago

A vulnerability was found in Industrial Application Software IAS Canias ERP 8.03

A vulnerability was found in Industrial Application Software IAS Canias ERP 8.03. The impacted element is the function doAction of the component Login RMI Interface. Performing a manipulation results in observable response discrepancy. T…

SunlitEPSS 0.29%via NVD
CVE-2026-20195Medium· 5.3
4mo ago

A vulnerability in an identity management API endpoint of Cisco ISE could allow an unauthenticated, remote attacker to enumerate valid user accounts on an affected device. This vulnerability exists because error messages are observed …

A vulnerability in an identity management API endpoint of Cisco ISE could allow an unauthenticated, remote attacker to enumerate valid user accounts on an affected device. This vulnerability exists because error messages are observed …

Sunlitcisco · identity_services_engineEPSS 0.27%via NVD
CVE-2026-24332Medium· 4.3PoC
8mo ago

Discord through 2026-01-16 allows gathering information about whether a user's client state is Invisible (and not actually offline) because the response to a WebSocket API request includes the user in the presences array (with "status": …

Discord through 2026-01-16 allows gathering information about whether a user's client state is Invisible (and not actually offline) because the response to a WebSocket API request includes the user in the presences array (with "status": …

TwilightDiscord · WebSocket API serviceEPSS 0.29%via CVEORG
CWE-204 vulnerabilities (CVEs) · VulnSea