Top technology
Linux 13140
Google 12536
Microsoft 12379
Oracle 6843
Apple 6692
Adobe 6387
Ibm 6336
Cisco 5759
Debian 3919
Mozilla 2895
Apache 2864
Redhat 2592
MEDIUM 5.3
CVE-2018-1682
IBM Watson Studio Local 1.2.3 could disclose sensitive information over the network that an attacked could use in further attacks against the system.…
Watston Studio Local
Patch available
MEDIUM 5.3
CVE-2013-4868
Karotz API 12.07.19.00: Session Token Information Disclosure
Api
No fix yet
HIGH 7.5
CVE-2012-4420
An information disclosure flaw was found in the way the Java Virtual Machine (JVM) implementation of Java SE 7 as provided by OpenJDK 7 incorrectly i…
Jdk
No fix yet
MEDIUM 5.3
CVE-2019-5073
An exploitable information exposure vulnerability exists in the iocheckd service "I/O-Check" functionality of WAGO PFC200 Firmware versions 03.01.07(…
Pfc 200 Firmware
No fix yet
HIGH 7.5
CVE-2019-15576
An information disclosure vulnerability exists in GitLab CE/EE <v12.3.2, <v12.2.6, and <v12.1.12 that allowed an attacker to view private system note…
GitLab
12.1.12 / 12.2.6+
MEDIUM 6.5
CVE-2019-15580
An information exposure vulnerability exists in gitlab.com <v12.3.2, <v12.2.6, and <v12.1.10 when using the blocking merge request feature, it was po…
GitLab
12.1.10 / 12.2.6+
HIGH 7.5
CVE-2019-8620
A user privacy issue was addressed by removing the broadcast MAC address. This issue is fixed in iOS 12.3, tvOS 12.3, watchOS 5.2.1. A device may be …
Iphone Os
5.2.1 / 12.3+
HIGH 7.5
CVE-2019-8567
A user privacy issue was addressed by removing the broadcast MAC address. This issue is fixed in iOS 12.2. A device may be passively tracked by its W…
Iphone Os
12.2+
HIGH 7.5
CVE-2019-3992
ELOG 3.1.4-57bea22 and below is affected by an information disclosure vulnerability. A remote unauthenticated attacker can access the server's config…
Fedora
after 3.1.4-57bea22
HIGH 7.5
CVE-2019-3993EPSS 46%
ELOG 3.1.4-57bea22 and below is affected by an information disclosure vulnerability. A remote unauthenticated attacker can recover a user's password …
Fedora
after 3.1.4-57bea22
MEDIUM 5.3
CVE-2019-12414
In Apache Incubator Superset before 0.32, a user can view database names that he has no access to on a dropdown list in SQLLab
Superset
0.32+
MEDIUM 5.5
CVE-2019-4444
IBM API Connect 2018.1 through 2018.4.1.7 Developer Portal's user registration page does not disable password autocomplete. An attacker with access t…
Api Connect
after 2018.4.1.7
MEDIUM 5.3
CVE-2019-18335
A vulnerability has been identified in SPPA-T3000 Application Server (All versions < Service Pack R8.2 SP2). An attacker with network access to the A…
Sppa T3000 Application Server
Mitigation only
MEDIUM 5.3
CVE-2019-18331
A vulnerability has been identified in SPPA-T3000 Application Server (All versions < Service Pack R8.2 SP2). An attacker with network access to the A…
Sppa T3000 Application Server
Mitigation only
MEDIUM 5.3
CVE-2019-18332
A vulnerability has been identified in SPPA-T3000 Application Server (All versions < Service Pack R8.2 SP2). An attacker with network access to the A…
Sppa T3000 Application Server
Mitigation only
MEDIUM 5.3
CVE-2019-18333
A vulnerability has been identified in SPPA-T3000 Application Server (All versions < Service Pack R8.2 SP2). An attacker with network access to the A…
Sppa T3000 Application Server
Mitigation only
MEDIUM 5.3
CVE-2019-18334
A vulnerability has been identified in SPPA-T3000 Application Server (All versions < Service Pack R8.2 SP2). An attacker with network access to the A…
Sppa T3000 Application Server
Mitigation only
MEDIUM 5.3
CVE-2019-18286
A vulnerability has been identified in SPPA-T3000 Application Server (All versions < Service Pack R8.2 SP2). The Application Server exposes directory…
Sppa T3000 Application Server
No fix yet
MEDIUM 5.3
CVE-2019-18287
A vulnerability has been identified in SPPA-T3000 Application Server (All versions < Service Pack R8.2 SP2). The Application Server exposes directory…
Sppa T3000 Application Server
No fix yet
HIGH 7.5
CVE-2019-0405
SAP Enable Now, before version 1911, leaks information about the existence of a particular user which can be used to construct a list of users, leadi…
Enable Now
1911+
MEDIUM 6.5
CVE-2019-1487
An information disclosure vulnerability in Android Apps using Microsoft Authentication Library (MSAL) 0.3.1-Alpha or later exists under specific cond…
Authentication Library
after 0.2.2
MEDIUM 6.0
CVE-2019-1470EPSS 6%
An information disclosure vulnerability exists when Windows Hyper-V on a host operating system fails to properly validate input from an authenticated…
Windows 10
Patch available
MEDIUM 5.5
CVE-2019-1472
An information disclosure vulnerability exists when the Windows kernel improperly handles objects in memory, aka 'Windows Kernel Information Disclosu…
Windows 10
Patch available
MEDIUM 5.5
CVE-2019-1474
An information disclosure vulnerability exists when the Windows kernel improperly handles objects in memory, aka 'Windows Kernel Information Disclosu…
Windows 10
Patch available
MEDIUM 5.5
CVE-2019-1463
An information disclosure vulnerability exists in Microsoft Access software when the software fails to properly handle objects in memory, aka 'Micros…
Office
Patch available
MEDIUM 5.5
CVE-2019-1464EPSS 8%
An information disclosure vulnerability exists when Microsoft Excel improperly discloses the contents of its memory, aka 'Microsoft Excel Information…
Excel
Patch available
MEDIUM 6.5
CVE-2019-1467EPSS 6%
An information disclosure vulnerability exists when the Windows GDI component improperly discloses the contents of its memory, aka 'Windows GDI Infor…
Windows 10
Patch available
MEDIUM 5.5
CVE-2019-1469
An information disclosure vulnerability exists when the win32k component improperly provides kernel information, aka 'Win32k Information Disclosure V…
Windows 10
Patch available
MEDIUM 5.5
CVE-2019-1400
An information disclosure vulnerability exists in Microsoft Access software when the software fails to properly handle objects in memory, aka 'Micros…
Office
Patch available
MEDIUM 6.5
CVE-2019-13737
Insufficient policy enforcement in autocomplete in Google Chrome prior to 79.0.3945.79 allowed a remote attacker to obtain potentially sensitive info…
Chrome
79.0.3945.79+