CWE-524
39 active CVEs classified under this weakness category. Sourced from NVD, GHSA, and vendor advisories. Full definition on MITRE →
CVEs classified under CWE-524page 1 of 1
- CVE-2019-11244MEDIUMCVSS 5.0EG 5.02019-04-22
In Kubernetes v1.8.x-v1.14.x, schema info is cached by kubectl in the location specified by --cache-dir (defaulting to $HOME/.kube/http-cache), written with world-writeable permissions (rw-rw-rw-). If --cache-dir is specified and pointed a…
- CVE-2019-14997MEDIUMCVSS 4.3EG 4.32019-09-11
The AccessLogFilter class in Jira before version 8.4.0 allows remote anonymous attackers to learn details about other users, including their username, via an information expose through caching vulnerability when Jira is configured with a r…
- CVE-2019-9494MEDIUMCVSS 5.9EG 5.92019-04-17
The implementations of SAE in hostapd and wpa_supplicant are vulnerable to side channel attacks as a result of observable timing differences and cache access patterns. An attacker may be able to gain leaked information from a side channel …
- CVE-2019-9495LOWCVSS 3.7EG 3.72019-04-17
The implementations of EAP-PWD in hostapd and wpa_supplicant are vulnerable to side-channel attacks as a result of cache access patterns. All versions of hostapd and wpa_supplicant with EAP-PWD support are vulnerable. The ability to instal…
- CVE-2021-24027HIGHCVSS 7.5EG 7.52021-04-06
A cache configuration issue prior to WhatsApp for Android v2.21.4.18 and WhatsApp Business for Android v2.21.4.18 may have allowed a third party with access to the device’s external storage to read cached TLS material.
- CVE-2021-44854MEDIUMCVSS 5.3EG 5.32022-12-26
An issue was discovered in MediaWiki before 1.35.5, 1.36.x before 1.36.3, and 1.37.x before 1.37.1. The REST API publicly caches results from private wikis.
- CVE-2022-32909MEDIUMCVSS 5.5EG 5.52022-11-01
The issue was addressed with improved handling of caches. This issue is fixed in iOS 16. An app may be able to access user-sensitive data.
- CVE-2022-3292MEDIUMCVSS 4.6EG 4.62022-09-28
Use of Cache Containing Sensitive Information in GitHub repository ikus060/rdiffweb prior to 2.4.8.
- CVE-2023-37486MEDIUMCVSS 5.9EG 5.92023-08-08
Under certain conditions SAP Commerce (OCC API) - versions HY_COM 2105, HY_COM 2205, COM_CLOUD 2211, endpoints allow an attacker to access information which would otherwise be restricted. On successful exploitation there could be a high …
- CVE-2023-37516LOWCVSS 3.2EG 3.22025-04-24
Missing "no cache" headers in HCL Leap permits user directory information to be cached.
- CVE-2023-37517LOWCVSS 3.2EG 3.22025-04-30
Missing "no cache" headers in HCL Leap permits sensitive data to be cached.
- CVE-2023-45696MEDIUMCVSS 4.0EG 4.02024-02-10
Sametime is impacted by sensitive fields with autocomplete enabled in the Legacy web chat client. By default, this allows user entered data to be stored by the browser.
- CVE-2024-0874MEDIUMCVSS 5.3EG 5.32024-04-25
A flaw was found in coredns. This issue could lead to invalid cache entries returning due to incorrectly implemented caching.
- CVE-2024-12314HIGHCVSS 7.2EG 7.22025-02-18
The Rapid Cache plugin for WordPress is vulnerable to Cache Poisoning in all versions up to, and including, 1.2.3. This is due to plugin storing HTTP headers in the cached data. This makes it possible for unauthenticated attackers to poiso…
- CVE-2024-27917HIGHCVSS 7.5EG 7.52024-03-06
Shopware is an open commerce platform based on Symfony Framework and Vue. The Symfony Session Handler pops the Session Cookie and assigns it to the Response. Since Shopware 6.5.8.0, the 404 pages are cached to improve the performance of 40…
- CVE-2024-30127LOWCVSS 3.2EG 3.22025-04-24
Missing "no cache" headers in HCL Leap permits sensitive data to be cached.
- CVE-2024-33004MEDIUMCVSS 4.3EG 4.32024-05-14
SAP Business Objects Business Intelligence Platform is vulnerable to Insecure Storage as dynamic web pages are getting cached even after logging out. On successful exploitation, the attacker can see the sensitive information through cache …
- CVE-2024-41906MEDIUMCVSS 4.8EG 4.82024-08-13
A vulnerability has been identified in SINEC Traffic Analyzer (6GK8822-1BG01-0BA0) (All versions < V2.0). The affected application does not properly handle cacheable HTTP responses in the web service. This could allow an attacker to read a…
- CVE-2024-45596HIGHCVSS 7.4EG 7.42024-09-10
Directus is a real-time API and App dashboard for managing SQL database content. An unauthenticated user can access credentials of last authenticated user via OpenID or OAuth2 where the authentication URL did not include redirect query str…
- CVE-2024-49580MEDIUMCVSS 5.3EG 5.32024-10-17
In JetBrains Ktor before 2.3.13 improper caching in HttpCache Plugin could lead to response information disclosure
- CVE-2025-4233MEDIUMCVSS 5.1EG 0.02025-06-12
An insufficient implementation of cache vulnerability in Palo Alto Networks Prisma® Access Browser enables users to bypass certain data control policies.
- CVE-2025-43410LOWCVSS 2.4EG 2.42025-12-12
The issue was addressed with improved handling of caches. This issue is fixed in macOS Sequoia 15.7.2, macOS Sonoma 14.8.2, macOS Tahoe 26.2. An attacker with physical access may be able to view deleted notes.
- CVE-2025-5141MEDIUMCVSS 5.5EG 5.52025-06-17
A binary in the BoKS Server Agent component of Fortra's Core Privileged Access Manager (BoKS) on versions 7.2.0 (up to 7.2.0.17), 8.1.0 (up to 8.1.0.22), 8.1.1 (up to 8.1.1.7), 9.0.0 (up to 9.0.0.1) and also legacy tar installs of BoKS 7.2…
- CVE-2025-57752MEDIUMCVSS 6.2EG 6.22025-08-29
Next.js is a React framework for building full-stack web applications. In versions before 14.2.31 and from 15.0.0 to before 15.4.5, Next.js Image Optimization API routes are affected by cache key confusion. When images returned from API ro…
- CVE-2025-61598MEDIUMCVSS 5.3EG 5.32025-10-28
Discourse is an open source discussion platform. Version before 3.6.2 and 3.6.0.beta2, default Cache-Control response header with value no-store, no-cache was missing from error responses. This may caused unintended caching of those respon…
- CVE-2025-64696LOWCVSS 3.3EG 3.32025-12-09
Android App "Brother iPrint&Scan" versions 6.13.7 and earlier improperly uses an external cache directory. If exploited, application-specific files may be accessed from other malicious applications.
- CVE-2025-64762CRITICALCVSS 9.1EG 9.12025-11-21
The AuthKit library for Next.js provides convenient helpers for authentication and session management using WorkOS & AuthKit with Next.js. In authkit-nextjs version 2.11.0 and below, authenticated responses do not defensively apply anti-ca…
- CVE-2025-65681LOWCVSS 3.3EG 3.32025-11-26
An issue was discovered in Overhang.IO (tutor-open-edx) (overhangio/tutor) 20.0.2 allowing local unauthorized attackers to gain access to sensitive information due to the absence of proper cache-control HTTP headers and client-side session…
- CVE-2025-69202MEDIUMCVSS 6.5EG 6.52025-12-29
Axios Cache Interceptor is a cache interceptor for axios. Prior to version 1.11.1, when a server calls an upstream service using different auth tokens, axios-cache-interceptor returns incorrect cached responses, leading to authorization by…
- CVE-2025-69581MEDIUMCVSS 5.5EG 7.52026-01-16
An issue was discovered in Chamillo LMS 1.11.2. The Social Network /personal_data endpoint exposes full sensitive user information even after logout because proper cache-control is missing. Using the browser back button restores all person…
- CVE-2025-9901MEDIUMCVSS 5.9EG 5.92025-09-03
A flaw was found in libsoup’s caching mechanism, SoupCache, where the HTTP Vary header is ignored when evaluating cached responses. This header ensures that responses vary appropriately based on request headers such as language or authen…
- CVE-2026-22741LOWCVSS 3.1EG 3.12026-04-29
Spring MVC and WebFlux applications are vulnerable to cache poisoning when resolving static resources. More precisely, an application can be vulnerable when all the following are true: * the application is using Spring MVC or Spring …
- CVE-2026-24472MEDIUMCVSS 5.3EG 5.32026-01-27
Hono is a Web application framework that provides support for any JavaScript runtime. Prior to version 4.11.7, Cache Middleware contains an information disclosure vulnerability caused by improper handling of HTTP cache control directives. …
- CVE-2026-25540MEDIUMCVSS 6.5EG 6.52026-02-04
Mastodon is a free, open-source social network server based on ActivityPub. Prior to versions 4.3.19, 4.4.13, 4.5.6, Mastodon is vulnerable to web cache poisoning via `Rails.cache. When AUTHORIZED_FETCH is enabled, the ActivityPub endpoint…
- CVE-2026-32244MEDIUMCVSS 5.3EG 5.32026-05-19
Discourse is an open-source discussion platform. In versions prior to 2026.1.4, 2026.3.1, 2026.4.1 and 2026.5.0-latest.1, outdated cached AI summaries can leak removed content to anonymous and unprivileged users who cannot regenerate summa…
- CVE-2026-35193LOWCVSS 3.1EG 3.12026-06-03
An issue was discovered in Django 5.2 before 5.2.15 and 6.0 before 6.0.6. `django.middleware.cache.UpdateCacheMiddleware` in Django does not add `Authorization` to the `Vary` response header for requests bearing that header without `Cache-…
- CVE-2026-44457MEDIUMCVSS 5.3EG 5.32026-05-13
Hono is a Web application framework that provides support for any JavaScript runtime. Prior to 4.12.18, Cache Middleware does not skip caching for responses that declare per-user variance via Vary: Authorization or Vary: Cookie. As a resul…
- CVE-2026-48901HIGHCVSS 7.5EG 7.52026-05-26
The InputFilter::getInstance() method omitted a security sensitive parameter from the instance cache key.
- CVE-2026-6907MEDIUMCVSS 4.3EG 4.32026-05-05
An issue was discovered in 6.0 before 6.0.5 and 5.2 before 5.2.14. `django.middleware.cache.UpdateCacheMiddleware` erroneously caches requests where the `Vary` header contained an asterisk (`'*'`). This can lead to private data being store…
Map vulnerabilities like CWE-524 to your infrastructure
EchelonGraph correlates every CVE — across CWE-524 and 150+ other weakness categories — against the assets you actually run. See blast radius, fix versions, and remediation steps in one graph.
Start Free Scan →