CWE-532— Insertion of Sensitive Information into Log File
The product writes sensitive information to a log file.— MITRE CWE catalog
1,213 active CVEs classified under this weakness category. Sourced from NVD, GHSA, and vendor advisories. Full definition on MITRE →
CVEs classified under CWE-532page 22 of 25
- CVE-2025-66910MEDIUMCVSS 6.0EG 6.02025-12-19
Turms Server v0.10.0-SNAPSHOT and earlier contains a plaintext password storage vulnerability in the administrator authentication system. The BaseAdminService class caches administrator passwords in plaintext within AdminInfo objects to op…
- CVE-2025-6711MEDIUMCVSS 4.9EG 4.92025-07-07
An issue has been identified in MongoDB Server where unredacted queries may inadvertently appear in server logs when certain error conditions are encountered. This issue affects MongoDB Server v8.0 versions prior to 8.0.5, MongoDB Server v…
- CVE-2025-67223HIGHCVSS 7.5EG 7.52026-04-28
The Aranda File Server (AFS) component in Aranda Software Aranda Service Desk before 8.3.12 stores daily activity logs with predictable names in a publicly accessible directory, which allows unauthenticated remote attackers to obtain direc…
- CVE-2025-68675HIGHCVSS 7.5EG 7.52026-01-16
In Apache Airflow versions before 3.1.6, and 2.11.1 the proxies and proxy fields within a Connection may include proxy URLs containing embedded authentication information. These fields were not treated as sensitive by default and therefore…
- CVE-2025-68919MEDIUMCVSS 5.6EG 5.62025-12-24
Fujitsu / Fsas Technologies ETERNUS SF ACM/SC/Express (DX / AF Management Software) before 16.8-16.9.1 PA 2025-12, when collected maintenance data is accessible by a principal/authority other than ETERNUS SF Admin, allows an attacker to po…
- CVE-2025-70040MEDIUMCVSS 5.3EG 5.32026-03-09
An issue pertaining to CWE-532: Insertion of Sensitive Information into Log File was discovered in LupinLin1 jimeng-web-mcp v2.1.2. This allows an attacker to obtain sensitive information.
- CVE-2025-7371MEDIUMCVSS 6.8EG 6.82025-07-22
Okta On-Premises Provisioning (OPP) agents log certain user data during administrator-initiated password resets. This vulnerability allows an attacker with access to the local servers running OPP agents to retrieve user personal informatio…
- CVE-2025-7426CRITICALCVSS 9.3EG 9.32025-08-25
Information disclosure and exposure of authentication FTP credentials over the debug port 1604 in the MINOVA TTA service. This allows unauthenticated remote access to an active FTP account containing sensitive internal data and import stru…
- CVE-2025-7445MEDIUMCVSS 6.5EG 6.52025-09-05
Kubernetes secrets-store-sync-controller in versions before 0.0.2 discloses service account tokens in logs.
- CVE-2025-8663MEDIUMCVSS 6.5EG 6.52025-09-03
Insertion of Sensitive Information into Log File vulnerability in upKeeper Solutions upKeeper Manager allows Use of Known Domain Credentials.This issue affects upKeeper Manager: from 5.0.0 before 5.2.12.
- CVE-2025-8864MEDIUMCVSS 6.8EG 6.82025-08-11
Shared Access Signature token is not masked in the backup configuration response and is also exposed in the yb_backup logs
- CVE-2025-9985MEDIUMCVSS 5.3EG 5.32025-09-26
The Featured Image from URL (FIFU) plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including, 5.2.7 through publicly exposed log files. This makes it possible for unauthenticated attackers to…
- CVE-2026-0207HIGHCVSS 8.5EG 8.52026-04-14
A vulnerability exists in FlashBlade whereby sensitive information may be logged under specific conditions.
- CVE-2026-0267MEDIUMCVSS 5.5EG 5.52026-06-10
An information exposure vulnerability in the Palo Alto Networks GlobalProtect app on macOS enables a local user to learn the configured passcodes for disabling, disconnecting, or uninstalling the GlobalProtect app. After the passcode is kn…
- CVE-2026-0519LOWCVSS 3.4EG 3.42026-01-17
In Secure Access 12.70 and prior to 14.20, the logging subsystem may write an unredacted authentication token to logs under certain configurations. Any party with access to those logs could read the token and reuse it to access an integ…
- CVE-2026-0520LOWCVSS 2.8EG 2.82026-03-11
A potential vulnerability was reported in the Lenovo FileZ Android application that, under certain conditions, could allow a local authenticated user to retrieve some sensitive data stored in a log file.
- CVE-2026-0637MEDIUMCVSS 4.4EG 4.42026-08-06
When an Event Publisher output adapter is configured with irrelevant properties, the affected products log these properties. This logging occurs without sufficient validation or sanitization of the property values. A malicious actor with …
- CVE-2026-0936MEDIUMCVSS 5.0EG 5.02026-01-29
An Insertion of Sensitive Information into Log File vulnerability in B&R PVI client versions prior to 6.5 may be abused by an authenticated local attacker to gather credential information which is processed by the PVI client application. T…
- CVE-2026-11819MEDIUMCVSS 5.5EG 5.52026-06-23
Module: plugins/modules/keyring_info.py CVSS 3.1: 5.5 MEDIUM — AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N Issue: The module retrieves a passphrase from the OS native keyring (GNOME Keyring, macOS Keychain, Windows Credential Manager) and pl…
- CVE-2026-11820MEDIUMCVSS 6.5EG 6.52026-06-23
A flaw was found in the community.general Ansible collection's nexmo module. The module constructs HTTP requests to the Vonage/Nexmo SMS API by encoding API credentials (api_key and api_secret) into URL query parameters and sending them vi…
- CVE-2026-12053HIGHCVSS 7.5EG 8.62026-06-25
GitLab has remediated an issue in GitLab EE affecting all versions from 19.1 before 19.1.1 that under certain conditions could have allowed a user to access sensitive information that had already been committed to a project, due to insuffi…
- CVE-2026-12086MEDIUMCVSS 5.5EG 6.22026-06-30
IBM UCD - IBM UrbanCode Deploy 7.2 through 7.2.3.23, and 7.3 through 7.3.2.18 and IBM UCD - IBM DevOps Deploy 8.0 through 8.0.1.13, 8.1 through 8.1.2.6, and 8.2 through 8.2.1.0 IBM DevOps Deploy stores potentially sensitive information in …
- CVE-2026-1265MEDIUMCVSS 5.3EG 5.32026-03-03
IBM InfoSphere Information Server 11.7.0.0 through 11.7.1.6 is vulnerable to writing of sensitive Information in a log file.
- CVE-2026-1292MEDIUMCVSS 6.5EG 6.52026-02-20
Tanium addressed an insertion of sensitive information into log file vulnerability in Trends.
- CVE-2026-12947HIGHCVSS 7.5EG 7.52026-07-30
IBM App Connect Enterprise 13.0.1.0 through 13.0.7.2, and 12.0.1.0 through 12.0.12.27 stores potentially sensitive information in log files that could be read by a local user.
- CVE-2026-13750MEDIUMCVSS 5.5EG 5.52026-06-29
Insertion of sensitive information into log files in Snowflake CLI versions prior to 3.19 allowed plaintext credentials to be written to persistent local debug logs. An attacker could exploit this by obtaining read access to the affected u…
- CVE-2026-14163HIGHCVSS 7.1EG 7.12026-08-20
In affected versions of Octopus Server under certain circumstances it is possible for sensitive variables to be printed in the deployment variable snapshot in clear-text.
- CVE-2026-14528HIGHCVSS 7.5EG 7.52026-07-28
IBM WebSphere Application Server 9.0, and 8.5 traditional could allow a remote attacker to obtain sensitive information.
- CVE-2026-14948HIGHCVSS 8.8EG 8.82026-08-20
A low privileged remote attacker can hijack an active administrative session without needing to know the administrator password by extracting live plaintext session identifiers for authenticated users from downloadable error log archives.
- CVE-2026-1495MEDIUMCVSS 6.5EG 6.52026-02-10
The vulnerability, if exploited, could allow an attacker with Event Log Reader (S-1-5-32-573) privileges to obtain proxy details, including URL and proxy credentials, from the PI to CONNECT event log files. This could enable unauthorized a…
- CVE-2026-15737MEDIUMCVSS 5.7EG 5.72026-07-16
AWS Bedrock AgentCore Python SDK is an open-source Python library that provides client tools for building AI agents on the Amazon Bedrock AgentCore platform. Unintended logging of sensitive user content in the OpenTelemetry instrumentat…
- CVE-2026-1622MEDIUMCVSS 4.8EG 4.82026-02-04
Neo4j Enterprise and Community editions versions prior to 2026.01.3 and 5.26.21 are vulnerable to a potential information disclosure by a user who has ability to access the local log files. The "obfuscate_literals" option in the query lo…
- CVE-2026-18097MEDIUMCVSS 5.5EG 5.52026-08-12
IBM Db2 11.5.0 through 11.5.9, and 12.1.0 through 12.1.5 for Linux, UNIX and Windows (includes DB2 Connect Server) could allow a local attacker to obtain sensitive information due to the logging of plain text passwords in trace files.
- CVE-2026-18710MEDIUMCVSS 6.5EG 6.52026-08-11
A MongoDB driver component could write sensitive configuration information, including a credential used for outbound network connectivity, to application log output in cleartext during routine client initialization. This occurs automatical…
- CVE-2026-1918MEDIUMCVSS 4.9EG 4.92026-07-28
IBM Sterling B2B Integrator 6.2.0.0 through 6.2.0.5_2, 6.2.1.0 through 6.2.1.1_2, and 6.2.2.0 through 6.2.2.0_1 and IBM Sterling File Gateway 6.2.0.0 through 6.2.0.5_2, 6.2.1.0 through 6.2.1.1_2, and 6.2.2.0 through 6.2.2.0_1 stores potent…
- CVE-2026-19363MEDIUMCVSS 5.3EG 5.32026-08-09
A vulnerability was found in lmammino oidc-authorizer up to 0.4.0. Impacted is an unknown function of the file src/handler.rs of the component Lambda Authorizer. The manipulation results in sensitive information in log files. The attack ca…
- CVE-2026-19483HIGHCVSS 5.5EG 7.12026-08-13
IBM Storage Scale 5.2.3.0 through 5.2.3.8, and 6.0.0.0 through 6.0.1.0 Secrets may be disclosed in log files in IBM Storage Scale Management GUI The admin password is logged into the GUI log of IBM Storage Scale Systems Deploy and Upgrade …
- CVE-2026-19502MEDIUMCVSS 5.5EG 5.52026-08-12
MongoDB SQL Schema Builder CLI records its startup configuration to standard output and, when file logging is enabled, to a log file on disk. Certain connection settings were written without redaction, so authentication material supplied b…
- CVE-2026-20138MEDIUMCVSS 4.9EG 6.82026-02-18
In Splunk Enterprise versions below 10.2.0, 10.0.2, 9.4.7, 9.3.9, and 9.2.11, a user of a Splunk Search Head Cluster (SHC) deployment who holds a role with access to the Splunk `_internal` index could view the `integrationKey`, `secretKey…
- CVE-2026-20142MEDIUMCVSS 4.9EG 6.82026-02-18
In Splunk Enterprise versions below 10.2.0, 10.0.2, 9.4.7, 9.3.9, and 9.2.11, a user of a Splunk Search Head Cluster (SHC) deployment who holds a role with access to the Splunk `_internal` index could view the RSA `accessKey` value from th…
- CVE-2026-20144MEDIUMCVSS 4.9EG 6.82026-02-18
In Splunk Enterprise versions below 10.2.0, 10.0.2, 9.4.7, 9.3.8, and 9.2.11, and Splunk Cloud Platform versions below 10.2.2510.0, 10.1.2507.11, 10.0.2503.9, and 9.3.2411.120, a user of a Splunk Search Head Cluster (SHC) deployment who ho…
- CVE-2026-20165MEDIUMCVSS 6.5EG 6.52026-03-11
In Splunk Enterprise versions below 10.2.1, 10.0.4, 9.4.9, and 9.3.10, and Splunk Cloud Platform versions below 10.2.2510.7, 10.1.2507.17, 10.0.2503.12, and 9.3.2411.124, a low-privileged user that does not hold the "admin" or "power" Splu…
- CVE-2026-20205HIGHCVSS 7.2EG 7.22026-04-15
In Splunk MCP Server app versions below 1.0.3 , a user who holds a role with access to the Splunk `_internal` index or possesses the high-privilege capability `mcp_tool_admin` could view users session and authorization tokens in clear text…
- CVE-2026-20239HIGHCVSS 6.5EG 7.52026-05-20
In Splunk Enterprise versions below 10.2.2 and 10.0.5, and Splunk Cloud Platform versions below 10.3.2512.8, 10.2.2510.11, 10.1.2507.21, and 10.0.2503.13, a user with a role that has access to the `_internal` index could view session cooki…
- CVE-2026-20289MEDIUMCVSS 6.5EG 6.52026-08-05
A vulnerability in the logging subsystem of Cisco RoomOS could allow an authenticated, local attacker with low privileges to access sensitive information. This vulnerability is due to the logging of sensitive information. An attacker co…
- CVE-2026-20646LOWCVSS 3.3EG 3.32026-02-11
A logging issue was addressed with improved data redaction. This issue is fixed in macOS Tahoe 26.3. A malicious app may be able to read sensitive location information.
- CVE-2026-20663LOWCVSS 3.3EG 3.32026-02-11
The issue was resolved by sanitizing logging. This issue is fixed in iOS 18.7.5 and iPadOS 18.7.5, iOS 26.3 and iPadOS 26.3. An app may be able to enumerate a user's installed apps.
- CVE-2026-20668MEDIUMCVSS 5.5EG 5.52026-03-25
A logging issue was addressed with improved data redaction. This issue is fixed in iOS 18.7.7 and iPadOS 18.7.7, iOS 26.3 and iPadOS 26.3, macOS Sequoia 15.7.5, macOS Sonoma 14.8.5, macOS Tahoe 26.3, visionOS 26.3. An app may be able to ac…
- CVE-2026-20708MEDIUMCVSS 5.9EG 5.92026-08-11
Insertion of sensitive information into log file in the subsystem for the Intel(R) AMT and Intel(R) Standard Manageability may allow an information disclosure. Network adversary with a privileged user combined with a high complexity attack…
- CVE-2026-20818MEDIUMCVSS 6.2EG 6.22026-01-13
Insertion of sensitive information into log file in Windows Kernel allows an unauthorized attacker to disclose information locally.
Map vulnerabilities like CWE-532 to your infrastructure
EchelonGraph correlates every CVE — across CWE-532 and 150+ other weakness categories — against the assets you actually run. See blast radius, fix versions, and remediation steps in one graph.
Start Free Scan →