Topic
Information Disclosure
4 reports tagged Information Disclosure, spanning vulnerability coverage.
Articles tagged Information Disclosure
-
Vulnerabilitynuxt-ollama Information Disclosure (CVE-2026-59158)
A CWE-522 credential-exposure flaw in the nuxt-ollama npm package leaks a configured Ollama API key in plaintext to any unauthenticated visitor. Fixed in 1.3.1.
-
Vulnerability2 h2oai h2o-3 CVEs (CVE-2026-8750)
Two more h2o-3 vulnerabilities (CVE-2026-8750, CVE-2026-8752) expose server-side information and allow improper access control, both publicly disclosed after the vendor did not respond.
-
VulnerabilityKirby CMS Information Disclosure (CVE-2026-69127)
CVE-2026-69127 lets Kirby CMS's REST API leak the full server filesystem path in unsanitized error messages, useful for guessing the content.salt secret, fixed in Kirby 4.9.5 and 5.5.2.
-
Vulnerability6 CVEs Across 6 Vendors (CVE-2026-86217)
A roundup of six low-severity, unrelated vulnerabilities disclosed in September 2026: information disclosure and XSS in several small PHP student/hobby projects, an out-of-bounds read in Valkey requiring cluster-mode plus attacker file access, and a disputed SSRF report in OpenAgents.