Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-qvr5-4jwr-6hcv

Опубликовано: 22 июн. 2026
Источник: github
Github: Не прошло ревью
CVSS4: 9.2

Описание

Vulnerability involving the exposure of sensitive data provided without adequate protection. The API exposes email and phone number data from the ‘email’ and ‘telefon’ fields. This vulnerability is also present in the local database, as it contains accessible sensitive information such as data on minors and municipal users. Successful exploitation of this vulnerability could allow an unauthenticated remote attacker to gain access to sensitive information and data.

Vulnerability involving the exposure of sensitive data provided without adequate protection. The API exposes email and phone number data from the ‘email’ and ‘telefon’ fields. This vulnerability is also present in the local database, as it contains accessible sensitive information such as data on minors and municipal users. Successful exploitation of this vulnerability could allow an unauthenticated remote attacker to gain access to sensitive information and data.

EPSS

Процентиль: 42%
0.00544
Низкий

9.2 Critical

CVSS4

Дефекты

CWE-200

Связанные уязвимости

nvd
около 1 месяца назад

Vulnerability involving the exposure of sensitive data provided without adequate protection. The API exposes email and phone number data from the ‘email’ and ‘telefon’ fields. This vulnerability is also present in the local database, as it contains accessible sensitive information such as data on minors and municipal users. Successful exploitation of this vulnerability could allow an unauthenticated remote attacker to gain access to sensitive information and data.

EPSS

Процентиль: 42%
0.00544
Низкий

9.2 Critical

CVSS4

Дефекты

CWE-200