CVE-2023-37516

CVSS v3 Score
3.2
Low

Vulnerability Description

Missing "no cache" headers in HCL Leap permits user directory information to be cached.

CVSS:3.2(Low)

Missing "no cache" headers in HCL Leap permits sensitive data to be cached.

CVSS:3.2(Low)

Missing "no cache" headers in HCL Leap permits sensitive data to be cached.

CVSS:3.3(Low)

In Kubernetes v1.8.x-v1.14.x, schema info is cached by kubectl in the location specified by --cache-dir (defaulting to $HOME/.kube/http-cache), written with world-writeable permissions (rw-rw-rw-). If...

CVSS:3.7(Low)

The implementations of EAP-PWD in hostapd and wpa_supplicant are vulnerable to side-channel attacks as a result of cache access patterns. All versions of hostapd and wpa_supplicant with EAP-PWD suppor...

CVSS:4.3(Medium)

The AccessLogFilter class in Jira before version 8.4.0 allows remote anonymous attackers to learn details about other users, including their username, via an information expose through caching vulnera...

CVSS:4.3(Medium)

Use of Cache Containing Sensitive Information in GitHub repository ikus060/rdiffweb prior to 2.4.8.