Dgraph is an open source distributed GraphQL database. Versions 25.3.1 and prior contain an unauthenticated credential d
SiYuan before 3.7.4 registers Go net/http/pprof debug endpoints including heap and goroutine dumps without authenticatio
The /dbviewer/ web endpoint in METIS WIC devices is exposed without authentication. A remote attacker can access and exp
NATS-Server is a High-Performance server for NATS.io, a cloud and edge native messaging system. Prior to versions 2.11.1
HCL Hive is affected by an information exposure vulnerability where Swagger documentation was found exposed publicly. A
A information disclosure when DEBUG loglevel is set in SUSE Rancher AI Agent 1.0 before 1.0.2 could leak API keys or LLM
Cloud Foundry CLI, versions prior to v6.43.0, improperly exposes passwords when verbose/trace/debugging is turned on. A
Cloud Foundry Garden-runC, versions prior to 1.11.0, contains an information exposure vulnerability. A user with access
Frequently Asked Questions
What is CWE-215?
CWE-215 (CWE-215) is a weakness category in the Common Weakness Enumeration (CWE) system maintained by MITRE. It describes a class of software or hardware vulnerability that can lead to security issues.
How many CVEs are classified as CWE-215?
There are 8 CVE records associated with CWE-215 in our database. Of these, 2 are critical severity, 4 are high severity, and 1 are medium severity.
How can I protect against CWE-215 vulnerabilities?
Protection strategies depend on the specific weakness type. General measures include input validation, secure coding practices, regular security testing, and keeping software up to date. CyberStrike can help by automatically scanning your infrastructure for vulnerabilities related to CWE-215 using AI-powered security agents.
Detect CWE-215 Vulnerabilities
CyberStrike's AI agents automatically detect cwe-215 vulnerabilities across your infrastructure.
Get Started