Skip to main content

Over 150 LLM Providers · Over 5,300 Models The most extensible AI-powered pentesting platform. Open source. Star on GitHub

CWE-214

MITRE ↗

CWE-214

2
HIGH
9
MEDIUM
1
LOW
13 CVEs
7.9
CVE-2026-12250

Invocation of process using visible sensitive information vulnerability in TUBITAK BILGEM Software Technologies Research

7.4
CVE-2026-33247

NATS-Server is a High-Performance server for NATS.io, a cloud and edge native messaging system. Prior to versions 2.11.1

6.2
CVE-2026-81684

In openssl_encrypt (pip package openssl-encrypt) versions <= 1.4.8, the desktop GUI passes the steganography password to

5.7
CVE-2025-59955

Coolify is an open-source and self-hostable tool for managing servers, applications, and databases. Coolify versions pri

5.5
CVE-2026-40159

PraisonAI is a multi-agent teams system. Prior to 4.5.128, PraisonAI’s MCP (Model Context Protocol) integration allows s

5.5
CVE-2026-9494

An information disclosure vulnerability exists in Canonical ubuntu-pro-client (formerly ubuntu-advantage-tools). The cli

5.5
CVE-2026-74873

openssl_encrypt versions before 1.4.0 expose passwords passed via the --password CLI argument in process listings access

5.5
CVE-2026-65088

NVIDIA NemoClaw contains a vulnerability where an attacker could cause invocation of process using visible sensitive inf

5.5
CVE-2026-80158

A flaw was found in the ipa_getkeytab module of the community.general Ansible collection. The module's bind_pw parameter

5.0
CVE-2026-18915

Invocation of process using visible sensitive information vulnerability in TÜBİTAK BİLGEM Software Technologies Research

4.4
CVE-2026-12139

Tanium addressed an information disclosure vulnerability in Connect.

3.3
CVE-2026-41357

OpenClaw before 2026.3.31 contains an environment variable leakage vulnerability in SSH-based sandbox backends that pass

CVE-2026-76054

Invocation of Process Using Visible Sensitive Information in Black Duck blackduck-c-cpp 1.0.17 through 3.0.6 allows an a

Frequently Asked Questions

What is CWE-214?

CWE-214 (CWE-214) is a weakness category in the Common Weakness Enumeration (CWE) system maintained by MITRE. It describes a class of software or hardware vulnerability that can lead to security issues.

How many CVEs are classified as CWE-214?

There are 13 CVE records associated with CWE-214 in our database. Of these, 0 are critical severity, 2 are high severity, and 9 are medium severity.

How can I protect against CWE-214 vulnerabilities?

Protection strategies depend on the specific weakness type. General measures include input validation, secure coding practices, regular security testing, and keeping software up to date. CyberStrike can help by automatically scanning your infrastructure for vulnerabilities related to CWE-214 using AI-powered security agents.

Detect CWE-214 Vulnerabilities

CyberStrike's AI agents automatically detect cwe-214 vulnerabilities across your infrastructure.

Get Started