CWE-219: Storage of File with Sensitive Data Under Web Root
The product stores sensitive data under the web document root with insufficient access control, which might make it accessible to untrusted parties.
5 tracked CVEs are classified under this weakness.
Highest-risk vulnerabilities
- CVE-2024-39776 — Avtec Outpost Storage of File with Sensitive Data Under Web Root
- CVE-2024-56159 — Server source code is exposed to the public if sourcemaps are enabled
Recently published
- CVE-2024-56159 — Server source code is exposed to the public if sourcemaps are enabled
- CVE-2024-39776 — Avtec Outpost Storage of File with Sensitive Data Under Web Root
More specific weaknesses
- CWE-433 — Unparsed Raw Web Content Delivery