CWE-212— Improper Removal of Sensitive Information Before Storage or Transfer
The product stores, transfers, or shares a resource that contains sensitive information, but it does not properly remove that information before the product makes the resource available to unauthorized actors.— MITRE CWE catalog
134 active CVEs classified under this weakness category. Sourced from NVD, GHSA, and vendor advisories. Full definition on MITRE →
CVEs classified under CWE-212page 2 of 3
- CVE-2026-54421MEDIUMCVSS 6.8EG 6.82026-06-14
In OpenStack Ironic before 37.0.1, when applying a PATCH to update fields in volume properties the user is authorized for, Ironic can return unredacted sensitive information (such as iSCSI credentials). The PATCH outcome is a security issu…
- CVE-2021-33080MEDIUMCVSS 6.8EG 6.82022-05-12
Exposure of sensitive system information due to uncleared debug information in firmware for some Intel(R) SSD DC, Intel(R) Optane(TM) SSD and Intel(R) Optane(TM) SSD DC Products may allow an unauthenticated user to potentially enable infor…
- CVE-2020-11198MEDIUMCVSS 6.7EG 6.72021-02-22
Key material used for TZ diag buffer encryption and other data related to log buffer is not wiped securely due to improper usage of memset in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon…
- CVE-2026-67071MEDIUMCVSS 6.5EG 6.52026-09-17
HCL DevOps Deploy / HCL Launch is susceptible to an information disclosure vulnerability when processing redacted property values. If a deployment is configured with a secure property that starts with certain non-ASCII characters, the reda…
- CVE-2026-82069MEDIUMCVSS 6.5EG 6.52026-09-08
A security issue in MongoDB Server's query statistics serialization on the router allows users with monitoring privileges to access unredacted search query text from other users' operations. An improper conditional check in the serializati…
- CVE-2026-78658MEDIUMCVSS 6.5EG 6.52026-09-04
IBM UCD - IBM UrbanCode Deploy 7.2 through 7.2.3.25, and 7.3 through 7.3.2.20 and IBM UCD - IBM DevOps Deploy 8.0 through 8.0.1.15, 8.1 through 8.1.2.8, and 8.2 through 8.2.2.1 IBM DevOps Deploy / IBM UrbanCode Deploy (UCD) is susceptible …
- CVE-2026-16104MEDIUMCVSS 6.5EG 6.52026-07-17
A flaw was found in the authentication configuration endpoint of the keycloak-services component, which is the core engine for Red Hat Build of Keycloak identity and access management. The issue occurs because the system fails to mask sens…
- CVE-2026-45737MEDIUMCVSS 6.5EG 6.52026-05-19
Argo CD is a declarative, GitOps continuous delivery tool for Kubernetes. From 3.2.0 until 3.2.12, 3.3.10, and 3.4.2, Argo CD ServerSideDiff can expose Kubernetes Secret values embedded in the kubectl.kubernetes.io/last-applied-configurati…
- CVE-2026-27892MEDIUMCVSS 6.5EG 6.52026-05-18
FacturaScripts is an open source accounting and invoicing software. In versions prior to 2026, the Library module stores and serves uploaded images byte-for-byte, without stripping EXIF/XMP/IPTC metadata. Any authenticated user who downloa…
- CVE-2026-43528MEDIUMCVSS 6.5EG 6.52026-05-05
OpenClaw before 2026.4.14 contains a redaction bypass vulnerability that allows authenticated gateway clients to receive unredacted secrets through sourceConfig and runtimeConfig alias fields. Attackers with config read access can exploit …
- CVE-2026-34214MEDIUMCVSS 6.5EG 6.52026-03-31
Trino is a distributed SQL query engine for big data analytics. From version 439 to before version 480, Iceberg connector REST catalog static credentials (access key) or vended credentials (temporary access key) are accessible to users tha…
- CVE-2024-31493MEDIUMCVSS 6.5EG 6.52024-06-03
An improper removal of sensitive information before storage or transfer vulnerability [CWE-212] in FortiSOAR version 7.3.0, version 7.2.2 and below, version 7.0.3 and below may allow an authenticated low privileged user to read Connector p…
- CVE-2023-48308MEDIUMCVSS 6.5EG 6.52023-12-22
Nextcloud/Cloud is a calendar app for Nextcloud. An attacker can gain access to stacktrace and internal paths of the server when generating an exception while editing a calendar appointment. It is recommended that the Nextcloud Calendar ap…
- CVE-2022-29900MEDIUMCVSS 6.5EG 6.52022-07-12
Mis-trained branch predictions for return instructions may allow arbitrary speculative code execution under certain microarchitecture-dependent conditions.
- CVE-2021-26341MEDIUMCVSS 6.5EG 6.52022-03-11
Some AMD CPUs may transiently execute beyond unconditional direct branches, which may potentially result in data leakage.
- CVE-2022-25187MEDIUMCVSS 6.5EG 6.52022-02-15
Jenkins Support Core Plugin 2.79 and earlier does not redact some sensitive information in the support bundle.
- CVE-2020-14301MEDIUMCVSS 6.5EG 6.52021-05-27
An information disclosure vulnerability was found in libvirt in versions before 6.3.0. HTTP cookies used to access network-based disks were saved in the XML dump of the guest domain. This flaw allows an attacker to access potentially sensi…
- CVE-2020-26965MEDIUMCVSS 6.5EG 6.52020-12-09
Some websites have a feature "Show Password" where clicking a button will change a password field into a textbook field, revealing the typed password. If, when using a software keyboard that remembers user input, a user typed their passwor…
- CVE-2019-19362MEDIUMCVSS 6.5EG 6.52019-12-02
An issue was discovered in the Chat functionality of the TeamViewer desktop application 14.3.4730 on Windows. (The vendor states that it was later fixed.) Upon login, every communication is saved within Windows main memory. When a user log…
- CVE-2025-33013MEDIUMCVSS 6.2EG 6.22025-07-24
IBM MQ Operator LTS 2.0.0 through 2.0.29, MQ Operator CD 3.0.0, 3.0.1, 3.1.0 through 3.1.3, 3.3.0, 3.4.0, 3.4.1, 3.5.0, 3.5.1, 3.6.0, and MQ Operator SC2 3.2.0 through 3.2.13 Container could disclose sensitive information to a local user d…
- CVE-2025-61643MEDIUMCVSS 6.1EG 6.12026-02-03
Vulnerability in Wikimedia Foundation MediaWiki. This vulnerability is associated with program files includes/recentchanges/RecentChangeRCFeedNotifier.Php. This issue affects MediaWiki: from * before 1.39.14, 1.43.4, 1.44.1.
- CVE-2025-48066MEDIUMCVSS 6.0EG 6.02025-05-22
wire-webapp is the web application for the open-source messaging service Wire. A bug fix caused a regression causing an issue with function to delete local data. Instructing the client to delete its local database on user logout does not r…
- CVE-2026-62900MEDIUMCVSS 5.9EG 5.92026-08-11
Improper removal of sensitive information before storage or transfer in .NET allows an unauthorized attacker to disclose information over a network.
- CVE-2025-1759MEDIUMCVSS 5.9EG 5.92025-08-18
IBM Concert Software 1.0.0 through 1.1.0 could allow a remote attacker to obtain sensitive information from allocated memory due to improper clearing of heap memory.
- CVE-2024-29120MEDIUMCVSS 5.9EG 5.92024-07-17
In Streampark (version < 2.1.4), when a user logged in successfully, the Backend service would return "Authorization" as the front-end authentication credential. User can use this credential to request other users' information, including …
- CVE-2021-39891MEDIUMCVSS 5.9EG 5.92021-10-05
In all versions of GitLab CE/EE since version 8.0, access tokens created as part of admin's impersonation of a user are not cleared at the end of impersonation which may lead to unnecessary sensitive info disclosure.
- CVE-2026-15811MEDIUMCVSS 5.8EG 5.82026-07-21
A vulnerability was found in kronosnet's (version <=1.34) cryptographic configuration management. The framework does not correctly zero-out or wipe sensitive memory segments after executing changes to its cryptographic configuration. This …
- CVE-2025-59955MEDIUMCVSS 5.7EG 5.72026-01-05
Coolify is an open-source and self-hostable tool for managing servers, applications, and databases. Coolify versions prior to and including v4.0.0-beta.420.8 have an information disclosure vulnerability in the `/api/v1/teams/{team_id}/memb…
- CVE-2024-7698MEDIUMCVSS 5.7EG 5.72024-09-10
A low privileged remote attacker can get access to CSRF tokens of higher privileged users which can be abused to mount CSRF attacks.
- CVE-2024-5300MEDIUMCVSS 5.6EG 5.62026-07-21
An access control bypass and information disclosure vulnerability exists in the base AppArmor security profile configuration of Canonical snapd. The abstraction rules located in /etc/apparmor.d/abstractions/nss-systemd (inherited via ) ina…
- CVE-2026-45046MEDIUMCVSS 5.5EG 5.52026-05-27
Gryph provides a security layer for AI coding agents. Prior to 0.7.0, Gryph implements logging levels that determine what content is logged to a local sqlite database. The README incorrectly mentions that the default log level is minimal w…
- CVE-2024-56353MEDIUMCVSS 5.5EG 5.52024-12-20
In JetBrains TeamCity before 2024.12 backup file exposed user credentials and session cookies
- CVE-2024-43554MEDIUMCVSS 5.5EG 5.52024-10-08
Windows Kernel-Mode Driver Information Disclosure Vulnerability
- CVE-2023-3006MEDIUMCVSS 5.5EG 5.52023-05-31
A known cache speculation vulnerability, known as Branch History Injection (BHI) or Spectre-BHB, becomes actual again for the new hw AmpereOne. Spectre-BHB is similar to Spectre v2, except that malicious code uses the shared branch history…
- CVE-2023-1637MEDIUMCVSS 5.5EG 5.52023-03-27
A flaw that boot CPU could be vulnerable for the speculative execution behavior kind of attacks in the Linux kernel X86 CPU Power management options functionality was found in the way user resuming CPU from suspend-to-RAM. A local user cou…
- CVE-2022-0171MEDIUMCVSS 5.5EG 5.52022-08-26
A flaw was found in the Linux kernel. The existing KVM SEV API has a vulnerability that allows a non-root (host) user-level application to crash the host kernel by creating a confidential guest VM instance in AMD CPU that supports Secure E…
- CVE-2021-3602MEDIUMCVSS 5.5EG 5.52022-03-03
An information disclosure flaw was found in Buildah, when building containers using chroot isolation. Running processes in container builds (e.g. Dockerfile RUN commands) can access environment variables from parent and grandparent process…
- CVE-2021-28689MEDIUMCVSS 5.5EG 5.52021-06-11
x86: Speculative vulnerabilities with bare (non-shim) 32-bit PV guests 32-bit x86 PV guest kernels run in ring 1. At the time when Xen was developed, this area of the i386 architecture was rarely used, which is why Xen was able to use it t…
- CVE-2020-8696MEDIUMCVSS 5.5EG 5.52020-11-12
Improper removal of sensitive information before storage or transfer in some Intel(R) Processors may allow an authenticated user to potentially enable information disclosure via local access.
- CVE-2020-15024MEDIUMCVSS 5.5EG 5.52020-09-10
An issue was discovered in the Login Password feature of the Password Manager component in Avast Antivirus 20.1.5069.562. An entered password continues to be stored in Windows main memory after a logout, and after a Lock Vault operation.
- CVE-2020-13179MEDIUMCVSS 5.5EG 5.52020-08-11
Broker Protocol messages in Teradici PCoIP Standard Agent for Windows and Graphics Agent for Windows prior to 20.04.1 are not cleaned up in server memory, which may allow an attacker to read confidential information from a memory dump via …
- CVE-2020-11740MEDIUMCVSS 5.5EG 5.52020-04-14
An issue was discovered in xenoprof in Xen through 4.13.x, allowing guest OS users (without active profiling) to obtain sensitive information about other guests. Unprivileged guests can request to map xenoprof buffers, even if profiling ha…
- CVE-2005-0406MEDIUMCVSS 5.5EG 5.52005-02-14
A design flaw in image processing software that modifies JPEG images might not modify the original EXIF thumbnail, which could lead to an information leak of potentially sensitive visual information that had been removed from the main JPEG…
- CVE-2025-65000MEDIUMCVSS 5.3EG 5.32025-12-18
SSH private keys of the "Remote alert handlers (Linux)" rule were exposed in the rule page's HTML source in Checkmk <= 2.4.0p18 and all versions of Checkmk 2.3.0. This potentially allowed unauthorized triggering of predefined alert handler…
- CVE-2025-57757MEDIUMCVSS 5.3EG 5.32025-08-28
Contao is an Open Source CMS. In versions starting from 5.0.0 and prior to 5.3.38 and 5.6.1, if a news feed contains protected news archives, their news items are not filtered and become publicly available in the RSS feed. This issue has b…
- CVE-2024-32036MEDIUMCVSS 5.3EG 5.32024-04-15
ImageSharp is a 2D graphics API. A data leakage flaw was found in ImageSharp's JPEG and TGA decoders. This vulnerability is triggered when an attacker passes a specially crafted JPEG or TGA image file to a software using ImageSharp, potent…
- CVE-2021-38554MEDIUMCVSS 5.3EG 5.32021-08-13
HashiCorp Vault and Vault Enterprise’s UI erroneously cached and exposed user-viewed secrets between sessions in a single shared browser. Fixed in 1.8.0 and pending 1.7.4 / 1.6.6 releases.
- CVE-2020-14370MEDIUMCVSS 5.3EG 5.32020-09-23
An information disclosure vulnerability was found in containers/podman in versions before 2.0.5. When using the deprecated Varlink API or the Docker-compatible REST API, if multiple containers are created in a short duration, the environme…
- CVE-2020-3874MEDIUMCVSS 5.3EG 5.32020-02-27
An issued existed in the naming of screenshots. The issue was corrected with improved naming. This issue is fixed in iOS 13.3.1 and iPadOS 13.3.1. Screenshots of the Messages app may reveal additional message content.
- CVE-2018-1062MEDIUMCVSS 5.3EG 5.32018-03-06
A vulnerability was discovered in oVirt 4.1.x before 4.1.9, where the combination of Enable Discard and Wipe After Delete flags for VM disks managed by oVirt, could cause a disk to be incompletely zeroed when removed from a VM. If the same…
Map vulnerabilities like CWE-212 to your infrastructure
EchelonGraph correlates every CVE — across CWE-212 and 150+ other weakness categories — against the assets you actually run. See blast radius, fix versions, and remediation steps in one graph.
Book a Demo →