CWE-499
2 active CVEs classified under this weakness category. Sourced from NVD, GHSA, and vendor advisories. Full definition on MITRE →
CVEs classified under CWE-499page 1 of 1
- CVE-2022-39309MEDIUMCVSS 4.9EG 4.92022-10-14
GoCD is a continuous delivery server. GoCD helps you automate and streamline the build-test-release cycle for continuous delivery of your product. GoCD versions prior to 21.1.0 leak the symmetric key used to encrypt/decrypt any secure vari…
- CVE-2024-5657LOWCVSS 3.7EG 3.72024-06-06
The CraftCMS plugin Two-Factor Authentication in versions 3.3.1, 3.3.2 and 3.3.3 discloses the password hash of the currently authenticated user after submitting a valid TOTP.
Map vulnerabilities like CWE-499 to your infrastructure
EchelonGraph correlates every CVE — across CWE-499 and 150+ other weakness categories — against the assets you actually run. See blast radius, fix versions, and remediation steps in one graph.
Start Free Scan →