CVE-2023-38732 – IBM Robotic Process Automation information disclosure
https://notcve.org/view.php?id=CVE-2023-38732
IBM Robotic Process Automation 21.0.0 through 21.0.7 server could allow an authenticated user to view sensitive information from application logs. IBM X-Force ID: 262289. El servidor IBM Robotic Process Automation v21.0.0 a v21.0.7 podría permitir a un usuario autenticado ver información confidencial de los registros de la aplicación. IBM X-Force ID: 262289. • https://exchange.xforce.ibmcloud.com/vulnerabilities/262289 https://www.ibm.com/support/pages/node/7028221 • CWE-532: Insertion of Sensitive Information into Log File •
CVE-2020-35342
https://notcve.org/view.php?id=CVE-2020-35342
GNU Binutils before 2.34 has an uninitialized-heap vulnerability in function tic4x_print_cond (file opcodes/tic4x-dis.c) which could allow attackers to make an information leak. • https://security.netapp.com/advisory/ntap-20231006-0009 https://sourceware.org/bugzilla/show_bug.cgi?id=25319 • CWE-665: Improper Initialization •
CVE-2023-38158 – Microsoft Edge (Chromium-based) Information Disclosure Vulnerability
https://notcve.org/view.php?id=CVE-2023-38158
Microsoft Edge (Chromium-based) Information Disclosure Vulnerability Vulnerabilidad de divulgación de información de Microsoft Edge (basado en Chromium) • https://msrc.microsoft.com/update-guide/vulnerability/CVE-2023-38158 •
CVE-2023-40735 – Butterfly Button Project - Sensitive Information Disclosure
https://notcve.org/view.php?id=CVE-2023-40735
Exposure of Sensitive Information to an Unauthorized Actor vulnerability in BUTTERFLY BUTTON PROJECT - BUTTERFLY BUTTON (Architecture flaw) allows loss of plausible deniability and confidentiality. This issue affects BUTTERFLY BUTTON: As of 2023-08-21. • https://butterfly-button.web.app https://github.com/TheButterflyButton https://github.com/TheButterflySDK https://github.com/VULSecLabs/Vulnerabilities/blob/main/CVE/CVE-2023-40735.md https://www.butterfly-button.com https://www.vulsec.org/advisories • CWE-200: Exposure of Sensitive Information to an Unauthorized Actor •
CVE-2023-40662 – WordPress Cookies and Content Security Policy Plugin <= 2.15 is vulnerable to Sensitive Data Exposure
https://notcve.org/view.php?id=CVE-2023-40662
Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Jonk @ Follow me Darling Cookies and Content Security Policy.This issue affects Cookies and Content Security Policy: from n/a through 2.15. Exposición de información confidencial a una vulnerabilidad de actor no autorizado en Jonk @ Follow me Darling Cookies and Content Security Policy. Este problema afecta a Cookies and Content Security Policy: desde n/a hasta 2.15. The Cookies and Content Security Policy plugin for WordPress is vulnerable to Sensitive Information Exposure in versions up to, and including, 2.15 via the cacsp_texts function. This can allow unauthenticated attackers to extract sensitive data including the administrator email address. • https://patchstack.com/database/vulnerability/cookies-and-content-security-policy/wordpress-cookies-and-content-security-policy-plugin-2-15-sensitive-data-exposure-vulnerability? • CWE-200: Exposure of Sensitive Information to an Unauthorized Actor •