CWE-202: Exposure of Sensitive Information Through Data Queries
When trying to keep information confidential, an attacker can often infer some of the information by using statistics.
34 tracked CVEs are classified under this weakness.
Highest-risk vulnerabilities
- CVE-2025-25205 — Remote Authentication-Bypass can lead to server crash or limited information disclosure due to faulty pattern matching
- CVE-2026-33530 — InvenTree Vulnerable to ORM Filter Injection
- CVE-2025-69200 — phpMyFAQ has unauthenticated config backup download via /api/setup/backup
- CVE-2025-36575 — Dell Wyse Management Suite, versions prior to WMS 5.2, contain an Exposure of Sensitive Information Through Data Queries
- CVE-2025-29981 — Dell Wyse Management Suite, versions prior to WMS 5.1, contains an Exposure of Sensitive Information Through Data Querie
- CVE-2026-16520 — Improper input validation and Exposure of sensitive information through data queries vulnerability in Genians Genian NAC
- CVE-2025-68456 — Unauthenticated Craft CMS users can trigger a database backup
- CVE-2026-70473 — Flowise: Information Disclosure in GET /api/v1/upsert-history returns the entire server-wide upsert history
- CVE-2025-59352 — Dragonfly allows arbitrary file read and write on a peer machine
- CVE-2025-64528 — Users are able to find users by name even when `enable_names` is off
- CVE-2026-40245 — Free5GC: UDR nudr-dr influenceData/subs-to-notify leaks SUPI in error response body without authentication
- CVE-2026-30778 — Apache SkyWalking: The SkyWalking OAP /debugging/config/dump endpoint may leak sensitive configuration information of MySQL/PostgreSQL.
- CVE-2026-25703 — Potential information leakage from manager /network/graph API in NeuVector
- CVE-2024-20388 — A vulnerability in the password change feature of Cisco Firepower Management Center (FMC) software could allow an unauth
- CVE-2025-64504 — Langfuse vulnerable to cross‑organization enumeration of member & invitation lists via project membership APIs
- CVE-2026-3546 — e-shot <= 1.0.2 - Missing Authorization to Authenticated (Subscriber+) Sensitive Information Exposure via API Token via 'eshot_form_builder_get_account_data' AJAX Action
- CVE-2026-42797 — Apache Syncope: JexlContextBuilder Information Disclosure
- CVE-2026-25050 — Vendure vulnerable to timing attack that enables user enumeration in NativeAuthenticationStrategy
- CVE-2024-13255 — RESTful Web Services - Critical - Access bypass - SA-CONTRIB-2024-019
Recently published
- CVE-2026-16520 — Improper input validation and Exposure of sensitive information through data queries vulnerability in Genians Genian NAC
- CVE-2026-25703 — Potential information leakage from manager /network/graph API in NeuVector
- CVE-2026-70473 — Flowise: Information Disclosure in GET /api/v1/upsert-history returns the entire server-wide upsert history
- CVE-2026-42797 — Apache Syncope: JexlContextBuilder Information Disclosure
- CVE-2026-40245 — Free5GC: UDR nudr-dr influenceData/subs-to-notify leaks SUPI in error response body without authentication
- CVE-2026-30778 — Apache SkyWalking: The SkyWalking OAP /debugging/config/dump endpoint may leak sensitive configuration information of MySQL/PostgreSQL.
- CVE-2026-33530 — InvenTree Vulnerable to ORM Filter Injection
- CVE-2026-3546 — e-shot <= 1.0.2 - Missing Authorization to Authenticated (Subscriber+) Sensitive Information Exposure via API Token via 'eshot_form_builder_get_account_data' AJAX Action
- CVE-2026-25050 — Vendure vulnerable to timing attack that enables user enumeration in NativeAuthenticationStrategy
- CVE-2025-68456 — Unauthenticated Craft CMS users can trigger a database backup
- CVE-2025-64528 — Users are able to find users by name even when `enable_names` is off
- CVE-2025-69200 — phpMyFAQ has unauthenticated config backup download via /api/setup/backup
- CVE-2025-64504 — Langfuse vulnerable to cross‑organization enumeration of member & invitation lists via project membership APIs
- CVE-2025-59352 — Dragonfly allows arbitrary file read and write on a peer machine
- CVE-2025-36575 — Dell Wyse Management Suite, versions prior to WMS 5.2, contain an Exposure of Sensitive Information Through Data Queries
- CVE-2025-29981 — Dell Wyse Management Suite, versions prior to WMS 5.1, contains an Exposure of Sensitive Information Through Data Querie
- CVE-2025-25205 — Remote Authentication-Bypass can lead to server crash or limited information disclosure due to faulty pattern matching
- CVE-2024-13255 — RESTful Web Services - Critical - Access bypass - SA-CONTRIB-2024-019
- CVE-2024-20388 — A vulnerability in the password change feature of Cisco Firepower Management Center (FMC) software could allow an unauth