CWE-1258: Exposure of Sensitive System Information Due to Uncleared Debug Information
The hardware does not fully clear security-sensitive values, such as keys and intermediate values in cryptographic operations, when debug mode is entered.
13 tracked CVEs are classified under this weakness.
Highest-risk vulnerabilities
- CVE-2026-66432 — WordPress WPJAM Basic plugin <= 7.0.2.1 - Sensitive Data Exposure vulnerability
- CVE-2026-52696 — WordPress JetBlog plugin <= 2.4.8 - Sensitive Data Exposure vulnerability
- CVE-2025-32257 — WordPress 1 Click WordPress Migration Plugin <= 2.2 - Sensitive Data Exposure vulnerability
- CVE-2026-26948 — Dell Integrated Dell Remote Access Controller 9, 14G versions prior to 7.00.00.174, 15G and 16G versions prior to 7.10.9
- CVE-2025-26482 — Dell PowerEdge Server BIOS and Dell iDRAC9, all versions, contains an Information Disclosure vulnerability. A high privi
- CVE-2026-79727 — Dell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior to 5.36.00.00, contains
- CVE-2025-15480 — Senstive information disclosure was affecting ubuntu-desktop-provision
- CVE-2025-14551 — Senstive information disclosure was affecting subiquity
- CVE-2026-80239 — Dell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior to 5.36.00.00, contains
Recently published
- CVE-2026-79727 — Dell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior to 5.36.00.00, contains
- CVE-2026-80239 — Dell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior to 5.36.00.00, contains
- CVE-2026-66432 — WordPress WPJAM Basic plugin <= 7.0.2.1 - Sensitive Data Exposure vulnerability
- CVE-2026-52696 — WordPress JetBlog plugin <= 2.4.8 - Sensitive Data Exposure vulnerability
- CVE-2025-14551 — Senstive information disclosure was affecting subiquity
- CVE-2025-15480 — Senstive information disclosure was affecting ubuntu-desktop-provision
- CVE-2026-26948 — Dell Integrated Dell Remote Access Controller 9, 14G versions prior to 7.00.00.174, 15G and 16G versions prior to 7.10.9
- CVE-2025-26482 — Dell PowerEdge Server BIOS and Dell iDRAC9, all versions, contains an Information Disclosure vulnerability. A high privi
- CVE-2025-32257 — WordPress 1 Click WordPress Migration Plugin <= 2.2 - Sensitive Data Exposure vulnerability