VYPR

CWE-223

Omission of Security-relevant Information

BaseDraft

Description

The product does not record or display information that would be important for identifying the source or nature of an attack, or determining if an action is safe.

Hierarchy (View 1000)

Parents

CVEs mapped to this weakness (9)

  • CVE-2023-31191CriJul 11, 2023
    risk 0.60cvss 9.3epss 0.00

    DroneScout ds230 Remote ID receiver from BlueMark Innovations is affected by an information loss vulnerability through traffic injection. An attacker can exploit this vulnerability by injecting, on carefully selected channels, high power spoofed Open Drone ID (ODID) messages…

  • CVE-2023-29156MedJul 11, 2023
    risk 0.31cvss 4.7epss 0.00

    DroneScout ds230 Remote ID receiver from BlueMark Innovations is affected by an information loss vulnerability through traffic injection. An attacker can exploit this vulnerability by injecting, at the right times, spoofed Open Drone ID (ODID) messages which force the…

  • CVE-2026-31890MedMar 12, 2026
    risk 0.29cvss 5.5epss 0.00

    Inspektor Gadget is a set of tools and framework for data collection and system inspection on Kubernetes clusters and Linux hosts using eBPF. Prior to 0.50.1, in a situation where the ring-buffer of a gadget is – incidentally or maliciously – already full, the gadget will…

  • CVE-2022-22563MedApr 8, 2022
    risk 0.29cvss 4.4epss 0.00

    Dell EMC Powerscale OneFS 8.2.x - 9.2.x omit security-relevant information in /etc/master.passwd. A high-privileged user can exploit this vulnerability to not record information identifying the source of account information changes.

  • CVE-2025-35987MedAug 11, 2026
    risk 0.28cvss epss 0.00

    Omission of security-relevant information for some Intel(R) Software Guard Extensions Data Center Attestation Primitives within Ring 0: Kernel may allow a denial of service. Authorized adversary with a privileged user combined with a high complexity attack may enable data…

  • CVE-2023-28360MedMay 11, 2023
    risk 0.28cvss 4.3epss 0.01

    An omission of security-relevant information vulnerability exists in Brave desktop prior to version 1.48.171 when a user was saving a file there was no download safety check dialog presented to the user.

  • CVE-2024-52813MedJan 7, 2025
    risk 0.21cvss 4.3epss 0.00

    matrix-rust-sdk is an implementation of a Matrix client-server library in Rust. Versions of the matrix-sdk-crypto Rust crate before 0.8.0 lack a dedicated mechanism to notify that a user's cryptographic identity has changed from a verified to an unverified one, which could cause…

  • CVE-2022-44646LowNov 3, 2022
    risk 0.14cvss 2.2epss 0.00

    In JetBrains TeamCity version before 2022.10, no audit items were added upon editing a user's settings

  • CVE-2025-52926LowJun 23, 2025
    risk 0.11cvss 2.7epss 0.00

    In scan.rs in spytrap-adb before 0.3.5, matches for known stalkerware are not rendered in the interactive user interface.