VulnSea

CWE-209

CVEs classified under CWE-209, newest first.

50 CVEsRSS

CVE-2026-1030Medium· 4.3
3d ago

IBM Common Licensing Agent 9.0, Agent 9.0.0.1, Agent 9.0.0.2, ART 9.0, ART 9.0.0.1, and ART 9.0.0.2 generates an error message that includes sensitive information about its environment, users, or associated data.

IBM Common Licensing Agent 9.0, Agent 9.0.0.1, Agent 9.0.0.2, ART 9.0, ART 9.0.0.1, and ART 9.0.0.2 generates an error message that includes sensitive information about its environment, users, or associated data.

SunlitIBM · Common LicensingEPSS 0.29%via NVD
CVE-2025-1350Medium· 5.3
3d ago

IBM Controller 11.0.0 through 11.0.1 FP7, and 11.1.0 through 11.1.3 FP1 could allow a remote attacker to obtain sensitive information when a detailed technical error message is returned in the browser

IBM Controller 11.0.0 through 11.0.1 FP7, and 11.1.0 through 11.1.3 FP1 could allow a remote attacker to obtain sensitive information when a detailed technical error message is returned in the browser. This information could be used in f…

SunlitIBM · ControllerEPSS 0.40%via NVD
CVE-2026-45723Low· 2.7
4d ago

Omni manages Kubernetes on bare metal, virtual machines, or in a cloud

Omni manages Kubernetes on bare metal, virtual machines, or in a cloud. Prior to 1.6.6 and 1.7.3, managementServer.CreateSchematic in internal/backend/grpc/schematics.go passes the caller-controlled TalosVersion field to imageFactoryClie…

Sunlitsiderolabs · omniEPSS 0.39%via NVD
CVE-2026-92936Medium· 5.8PoC
4d ago

vm2 versions 3.11.0 through 3.11.6 leak absolute host filesystem paths to sandboxed code through error stack formatting

vm2 versions 3.11.0 through 3.11.6 leak absolute host filesystem paths to sandboxed code through error stack formatting. Attacker-supplied code can force the host-realm source transformer to throw a SyntaxError (for example by calling ev…

Twilightpatriksimek · vm2EPSS 0.41%via NVD
CVE-2026-54561Medium· 6.2PoC
6d ago

MCP Memory Keeper is an MCP server for persistent context management in AI coding assistants

MCP Memory Keeper is an MCP server for persistent context management in AI coding assistants. Prior to 0.13.0, context_import in src/index.ts passes the caller-controlled filePath directly to fs.readFileSync without restricting the path …

Twilightmkreyman · mcp-memory-keeperEPSS 0.30%via NVD
CVE-2026-55375Medium· 5.3
6d ago

canto-saas-api is a PHP library for interacting with the Canto SaaS API

canto-saas-api is a PHP library for interacting with the Canto SaaS API. Prior to version 3.0.0, OAuth2Request::getQueryParams() places app_id, app_secret, refresh_token, and code in the URL query string of token POST requests, allowing …

Sunlitjleehr · canto-saas-apiEPSS 0.25%via NVD
CVE-2026-55102Medium· 5.8
1w ago

hashi-vault-js is a Node.js module for interacting with the HashiCorp Vault API

hashi-vault-js is a Node.js module for interacting with the HashiCorp Vault API. Prior to 0.5.2, every API method in src/Vault.js passes failed requests through parseAxiosError(), which rethrows the raw AxiosError while retaining AxiosEr…

Sunlitkyndryl-open-source · hashi-vault-jsEPSS 0.11%via NVD
CVE-2026-66306Medium· 6.5
1w ago

Generation of error message containing sensitive information in Skype for Business allows an unauthorized attacker to disclose information over a network.

Generation of error message containing sensitive information in Skype for Business allows an unauthorized attacker to disclose information over a network.

Sunlitmicrosoft · skype_for_business_serverEPSS 0.50%via NVD
CVE-2026-69684Medium· 5.5
1w ago

Generation of error message containing sensitive information in Windows Error Reporting allows an authorized attacker to disclose information locally.

Generation of error message containing sensitive information in Windows Error Reporting allows an authorized attacker to disclose information locally.

SunlitMicrosoft · Windows 10 Version 1607EPSS 0.47%via NVD
CVE-2026-69552Medium· 5.7
1w ago

Generation of error message containing sensitive information in Windows Print Spooler Components allows an authorized attacker to disclose information over a network.

Generation of error message containing sensitive information in Windows Print Spooler Components allows an authorized attacker to disclose information over a network.

Sunlitmicrosoft · windows_10_1607EPSS 0.89%via NVD
CVE-2026-69294Medium· 5.5
1w ago

Generation of error message containing sensitive information in Microsoft COM for Windows allows an authorized attacker to disclose information locally.

Generation of error message containing sensitive information in Microsoft COM for Windows allows an authorized attacker to disclose information locally.

Sunlitmicrosoft · windows_10_1809EPSS 0.34%via NVD
CVE-2026-68886Medium· 5.5
1w ago

Use after free in Windows Network Connection Broker allows an authorized attacker to disclose information locally.

Use after free in Windows Network Connection Broker allows an authorized attacker to disclose information locally.

Sunlitmicrosoft · windows_10_1607EPSS 0.46%via NVD
CVE-2026-67383Medium· 6.5
1w ago

Generation of error message containing sensitive information in SQL Server allows an authorized attacker to disclose information over a network.

Generation of error message containing sensitive information in SQL Server allows an authorized attacker to disclose information over a network.

Sunlitmicrosoft · sql_server_2025EPSS 0.95%via NVD
CVE-2026-78693None
3w ago

Generation of Error Message Containing Sensitive Information vulnerability in ash-project ash_graphql allows a remote client to read internal field names that an application configured its error_handler to redact. In AshGraphql.Errors, …

Generation of Error Message Containing Sensitive Information vulnerability in ash-project ash_graphql allows a remote client to read internal field names that an application configured its error_handler to redact. In AshGraphql.Errors, …

SunlitEPSS 0.30%via NVD
CVE-2026-79777Low· 2.7
3w ago

rclone before v1.75.0 includes full Go stack traces in RC API error responses when panics occur

rclone before v1.75.0 includes full Go stack traces in RC API error responses when panics occur. Attackers can trigger panics to leak internal file paths, module versions, goroutine states, and memory addresses.

Sunlitrclone · github.com/rclone/rcloneEPSS 0.24%via NVD
CVE-2026-33333Low· 3.5
1mo ago

Combodo iTop is a web based IT service management tool

Combodo iTop is a web based IT service management tool. Prior to 3.2.3, there is sensitive information disclosure in the error messages. This issue has been fixed in version 3.2.3.

SunlitCombodo · iTopEPSS 0.20%via NVD
GHSA-ghvf-qf6h-g8x5High
1mo ago

NocoBase: Arbitrary File Write chained with Local file Inclusion leads to Remote code execution

NocoBase: Arbitrary File Write chained with Local file Inclusion leads to Remote code execution

Twilightnocobase · @nocobase/servervia GHSA
GHSA-hjwh-xvfw-qrwjMedium· 5.5
1mo ago

SearXNG Basic Authentication Credentials Exposed Through MCP Logs and JSON-RPC Error Responses

SearXNG Basic Authentication Credentials Exposed Through MCP Logs and JSON-RPC Error Responses

Sunlitmcp-searxng · mcp-searxngvia GHSA
CVE-2026-53458None
1mo ago

Blueprint Studio is a VS Code-like file editor for Home Assistant configuration files

Blueprint Studio is a VS Code-like file editor for Home Assistant configuration files. Prior to 2.5.2, Blueprint Studio backend API handlers in custom_components/blueprint_studio/backend/api.py returned raw exception strings to authentic…

SunlitEPSS 0.34%via NVD
GHSA-92hr-gmr6-h8cpMedium
1mo ago

Etherpad addressed weak token RNG, login timing, plugin path handling, API request handling

Etherpad addressed weak token RNG, login timing, plugin path handling, API request handling

Sunlitep_etherpad-lite · ep_etherpad-litevia GHSA
CVE-2026-73844Low· 3.7
1mo ago

CKAN MCP Server is a tool for querying CKAN open data portals

CKAN MCP Server is a tool for querying CKAN open data portals. Prior to 0.4.112, error paths reflect raw upstream response bodies and internal exception messages back to the caller instead of a sanitized, generic message. When the server…

Sunlitaborruso · @aborruso/ckan-mcp-serverEPSS 0.22%via NVD
CVE-2026-73555Medium· 5.3
1mo ago

vLLM is an inference and serving engine for large language models

vLLM is an inference and serving engine for large language models. Prior to 0.26.0, the validation_exception_handler in vllm/entrypoints/openai/server_utils.py converts FastAPI RequestValidationError objects with str(exc), and sanitize_m…

Sunlitvllm · vllmEPSS 0.26%via NVD
CVE-2026-48039Critical· 9.1
1mo ago

Meta Ads MCP is a Model Context Protocol (MCP) server that lets AI assistants run Meta Ads

Meta Ads MCP is a Model Context Protocol (MCP) server that lets AI assistants run Meta Ads. Prior to version 1.0.109, `AuthInjectionMiddleware.dispatch()` at `http_auth_integration.py:272` unconditionally forwards unauthenticated Streama…

Midnightmeta-ads-mcp · meta-ads-mcpEPSS 0.43%via NVD
CVE-2026-43630Medium· 6.5
1mo ago

llama.cpp builds b5702 through b7653 contain an out-of-bounds read vulnerability in the recurrent memory state restore path that allows attackers with write access to the slot save directory to read memory past the end of the allocated c…

llama.cpp builds b5702 through b7653 contain an out-of-bounds read vulnerability in the recurrent memory state restore path that allows attackers with write access to the slot save directory to read memory past the end of the allocated c…

Sunlitggml · llama.cppEPSS 0.45%via NVD
GHSA-gwfq-86j8-7qhvLow· 2.7
1mo ago

rclone: Verbose Stack Trace Disclosure in RC API Error Responses

rclone: Verbose Stack Trace Disclosure in RC API Error Responses

Sunlitrclone · github.com/rclone/rclonevia GHSA
CVE-2026-69247Medium· 5.9
1mo ago

cryptography is a package designed to expose cryptographic primitives and recipes to Python developers

cryptography is a package designed to expose cryptographic primitives and recipes to Python developers. From 44.0.0 until 50.0.0, pkcs7_decrypt_der, pkcs7_decrypt_pem, and pkcs7_decrypt_smime reported the outcome of decrypting a Recipien…

SunlitRed Hat · Red Hat Enterprise Linux 10EPSS 0.18%via NVD
GHSA-ppr4-5f46-j9c6High
1mo ago

Budibase: Server Filesystem Existence/Read Oracle via Builder-Controlled MongoDB tlsCertificateKeyFile

Budibase: Server Filesystem Existence/Read Oracle via Builder-Controlled MongoDB tlsCertificateKeyFile

Twilightbudibase · @budibase/servervia GHSA
CVE-2026-59943Medium
2mo ago

Dompdf: Embedded SVG images can leak existence of files and directories within the filesystem

Dompdf: Embedded SVG images can leak existence of files and directories within the filesystem

Sunlitdompdf · dompdf/dompdfEPSS 0.30%via GHSA
GHSA-qcr8-x557-7cp3Medium
2mo ago

@asymmetric-effort/specifyjs: Production console warnings may leak internal framework state

@asymmetric-effort/specifyjs: Production console warnings may leak internal framework state

Sunlitasymmetric-effort · @asymmetric-effort/specifyjsvia GHSA
GHSA-6g9v-7gq3-p2c6Medium· 4.3
2mo ago

SurrealDB: Authenticated callers can read fields hidden by field-level SELECT permissions via error messages

SurrealDB: Authenticated callers can read fields hidden by field-level SELECT permissions via error messages

Sunlitsurrealdb · surrealdbvia GHSA
CWE-209 vulnerabilities (CVEs) · VulnSea