Top technology
Linux 13140
Google 12525
Microsoft 12378
Apple 6692
Oracle 6649
Adobe 6383
Ibm 6266
Cisco 5746
Debian 3919
Apache 2864
Mozilla 2857
Redhat 2581
MEDIUM 5.5
CVE-2025-23289
NVIDIA Omniverse Launcher for Windows and Linux contains a vulnerability in the launcher logs, where a user could cause sensitive information to be w…
Mitigation only
MEDIUM 5.5
CVE-2025-26332
TechAdvisor versions 2.6 through 3.37-30 for Dell XtremIO X2, contain(s) an Insertion of Sensitive Information into Log File vulnerability. A low pri…
Techadvisor
3.4 / 6.4.3+
MEDIUM 5.5
CVE-2025-30105
Dell XtremIO, version(s) 6.4.0-22, contain(s) an Insertion of Sensitive Information into Log File vulnerability. A low privileged attacker with local…
Techadvisor
3.4 / 6.4.3+
MEDIUM 5.5
CVE-2025-43225
A logging issue was addressed with improved data redaction. This issue is fixed in iPadOS 17.7.9, macOS Sequoia 15.6, macOS Sonoma 14.7.7, macOS Vent…
Ipados
13.7.7 / 14.7.7+
MEDIUM 5.1
CVE-2025-53649
"SwitchBot" App for iOS/Android contains an insertion of sensitive information into log file vulnerability in versions V6.24 through V9.12. If this v…
Mitigation only
CRITICAL 9.3
CVE-2025-54120
PCL (Plain Craft Launcher) Community Edition is a Minecraft launcher. In PCL CE versions 2.12.0-beta.5 to 2.12.0-beta.9, the login credentials used d…
Patch available
MEDIUM 6.8
CVE-2025-7371
Okta On-Premises Provisioning (OPP) agents log certain user data during administrator-initiated password resets. This vulnerability allows an attacke…
Mitigation only
MEDIUM 6.3
CVE-2025-54319
An issue was discovered in Westermo WeOS 5 (5.24 through 5.24.4). A threat actor potentially can gain unauthorized access to sensitive information vi…
Mitigation only
CRITICAL 9.1
CVE-2025-6391
Brocade ASCG before 3.3.0 logs JSON
Web Tokens (JWT) in log files. An attacker with access to the log files
can withdraw the unencrypted tokens wi…
Brocade Active Support Connectivity Gateway
after 3.2.0
MEDIUM 5.5
CVE-2025-51497
An issue was discovered in AdGuard plugin before 1.11.22 for Safari on MacOS. AdGaurd verbosely logged each url that Safari accessed when the plugin …
Adguard For Safari
1.11.22+
MEDIUM 6.9
CVE-2025-54064
Rucio is a software framework that provides functionality to organize, manage, and access large volumes of scientific data using customizable policie…
Mitigation only
MEDIUM 5.5
CVE-2025-30483
Dell ECS versions prior to 3.8.1.5/ ObjectScale version 4.0.0.0 contains an Insertion of Sensitive Information into Log File vulnerability. A low pri…
Elastic Cloud Storage
3.8.1.5 / 4.0.0.1+
MEDIUM 6.5
CVE-2025-36599
Dell PowerFlex Manager VM, versions prior to 4.6.2.1, contains an Insertion of Sensitive Information into Log File vulnerability. A low privileged at…
Powerflex Manager
4.6.2.1+
MEDIUM 5.5
CVE-2025-5464
Insertion of sensitive information into a log file in Ivanti Connect Secure before version 22.7R2.8 allows a local authenticated attacker to obtain t…
Connect Secure
22.7+
MEDIUM 5.5
CVE-2025-5463
Insertion of sensitive information into a log file in Ivanti Connect Secure before version 22.7R2.8 and Ivanti Policy Secure before version 22.7R1.5 …
Connect Secure
22.7+
MEDIUM 6.5
CVE-2024-9453
A vulnerability was found in Red Hat OpenShift Jenkins. The bearer token is not obfuscated in the logs and potentially carries a high risk if those l…
Jenkins
Mitigation only
MEDIUM 5.2
CVE-2025-6587
System environment variables are recorded in Docker Desktop diagnostic logs, when using shell auto-completion. This leads to unintentional disclosure…
Mitigation only
HIGH 7.2
CVE-2025-6624
Versions of the package snyk before 1.1297.3 are vulnerable to Insertion of Sensitive Information into Log File through local Snyk CLI debug logs. Co…
Snyk Cli
1.1297.3+
HIGH 7.5
CVE-2024-7586
An issue was discovered in GitLab EE affecting all versions starting from 17.0 prior to 17.0.6, starting from 17.1 prior to 17.1.4, and starting from…
GitLab
17.0.6 / 17.1.4+
MEDIUM 6.2
CVE-2025-36050
IBM QRadar SIEM 7.5 through 7.5.0 Update Package 12 stores potentially sensitive information in log files that could be read by a local user.
Qradar Security Information And Event Manager
Mitigation only
MEDIUM 5.5
CVE-2025-50200
RabbitMQ is a messaging and streaming broker. In versions 3.13.7 and prior, RabbitMQ is logging authorization headers in plaintext encoded in base64.…
Rabbitmq Server
4.0.8+
MEDIUM 5.1
CVE-2025-2327
A flaw exists in FlashArray whereby the Key Encryption Key (KEK) is logged during key rotation when RDL is configured.
Mitigation only
MEDIUM 5.5
CVE-2025-36573
Dell Smart Dock Firmware, versions prior to 01.00.08.01, contain an Insertion of Sensitive Information into Log File vulnerability. A user with local…
Pro Smart Dock Sd25 Firmware
01.00.08.01+
MEDIUM 6.5
CVE-2025-48493
The Yii 2 Redis extension provides the redis key-value store support for the Yii framework 2.0. On failing connection, the extension writes commands …
Yii2 Redis
2.0.20+
MEDIUM 6.2
CVE-2025-49009
Para is a multitenant backend server/framework for object persistence and retrieval. A vulnerability that exists in versions prior to 1.50.8 in `Face…
Patch available
MEDIUM 6.2
CVE-2025-48955
Para is a multitenant backend server/framework for object persistence and retrieval. A vulnerability that exists in versions prior to 1.50.8 exposes …
Patch available
MEDIUM 5.5
CVE-2025-31199
A logging issue was addressed with improved data redaction. This issue is fixed in iOS 18.4 and iPadOS 18.4, macOS Sequoia 15.4, macOS Sonoma 14.8.2,…
Ipados
2.4 / 15.4+
MEDIUM 5.5
CVE-2025-48374
zot is ancontainer image/artifact registry based on the Open Container Initiative Distribution Specification. Prior to version 2.1.3 (corresponding t…
Patch available
HIGH 7.5
CVE-2025-26864
Exposure of Sensitive Information to an Unauthorized Actor, Insertion of Sensitive Information into Log File vulnerability in the OpenIdAuthorizer of…
Iotdb
1.3.4+
HIGH 7.5
CVE-2025-26795
Exposure of Sensitive Information to an Unauthorized Actor, Insertion of Sensitive Information into Log File vulnerability in Apache IoTDB JDBC drive…
Iotdb
1.3.4 / 2.0.2+