Skip to main content

CWE archive

CWE-649 CVEs

Programmatic archive

6 CVEs tagged with CWE-6490 Critical, 2 High, 4 Medium, 0 Low, 0 Unrated.

CVE-2025-41351

Published Jan 28, 2026

Vulnerability that allows a Padding Oracle Attack to be performed on the Funambol v30.0.0.20 cloud server. The thumbnail display URL allows an attacker to decrypt and encrypt the…

CVSS 6.0 · Medium
evidence mentions
1
Buzz score
11.9

CVE-2025-5323

Published May 29, 2025

A vulnerability, which was classified as problematic, has been found in fossasia open-event-server 1.19.1. This issue affects the function send_email_change_user_email of the file…

CVSS 6.3 · Medium
evidence mentions
5
Buzz score
24.4

CVE-2024-10772

Published Dec 6, 2024

Since the firmware update is not validated, an attacker can install modified firmware on the device. This has a high impact on the availabilty, integrity and confidentiality up to…

CVSS 8.8 · High

CVE-2024-36279

Published Jun 17, 2024

Reliance on obfuscation or encryption of security-relevant inputs without integrity checking issue exists in "FreeFrom - the nostr client" App versions prior to 1.3.5 for Android…

CVSS 5.3 · Medium

CVE-2019-3730

Published Sep 30, 2019

RSA BSAFE Micro Edition Suite versions prior to 4.1.6.3 (in 4.1.x) and prior to 4.4 (in 4.2.x and 4.3.x), are vulnerable to an Information Exposure Through an Error Message vulner…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort
Showing 1-6 of 6 CVEsPage 1 of 1