Draft in the CWE catalog · 13 CVEs mapped
The hardware does not fully clear security-sensitive values, such as keys and intermediate values in cryptographic operations, when debug mode is entered.
Subscriber Sensitive Data Exposure in WPJAM Basic <= 7.0.2.1 versions.
Unauthenticated Sensitive Data Exposure in JetBlog <= 2.4.8 versions.
In Ubuntu, Subiquity version 24.04.4 could leak sensitive user credentials during crash reporting. Upon installation failure, if a user submitted a bug report to Launchpad, Subiquity could include certain user credentials, such as the user's plaintext Wi-Fi password, in the attached logs.