CWE-223: Omission of Security-relevant Information
The product does not record or display information that would be important for identifying the source or nature of an attack, or determining if an action is safe.
10 tracked CVEs are classified under this weakness.
Highest-risk vulnerabilities
- CVE-2026-31890 — Inspektor Gadget: Tracing Denial of Service via Event Flooding
- CVE-2024-52813 — matrix-sdk-crypto missing facility to signal rotation of a verified cryptographic identity
- CVE-2025-35987 — Omission of security-relevant information for some Intel(R) Software Guard Extensions Data Center Attestation Primitives
- CVE-2026-49426 — Incorrect audit records for ptrace(2) syscall requests
- CVE-2025-52926 — In scan.rs in spytrap-adb before 0.3.5, matches for known stalkerware are not rendered in the interactive user interface
Recently published
- CVE-2026-49426 — Incorrect audit records for ptrace(2) syscall requests
- CVE-2025-35987 — Omission of security-relevant information for some Intel(R) Software Guard Extensions Data Center Attestation Primitives
- CVE-2026-31890 — Inspektor Gadget: Tracing Denial of Service via Event Flooding
- CVE-2025-52926 — In scan.rs in spytrap-adb before 0.3.5, matches for known stalkerware are not rendered in the interactive user interface
- CVE-2024-52813 — matrix-sdk-crypto missing facility to signal rotation of a verified cryptographic identity