CWE-311
511 CVEs • Abstraction: Class • Likelihood of Exploit: High
Missing Encryption of Sensitive Data
The product does not encrypt sensitive or critical information before storage or transmission.
CVEs (511)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
1Jstestdriver Project 1Jstestdriver Nov 21, 2024 Jun 4, 2018 N/A· v4 8.1 HIGH· v3 9.3 HIGH· v2 jstestdriver is a wrapper for Google's jstestdriver. jstestdriver downloads binary resources over HTTP, which leaves it vulnerable to MITM attacks. It may be possible to cause remote code execution (RCE) by swapping out...Show more |
cmake installs the cmake x86 linux binaries. cmake downloads binary resources over HTTP, which leaves it vulnerable to MITM attacks. It may be possible to cause remote code execution (RCE) by swapping out the requested b...Show more |
1Node Bsdiff Android Project 1Node Bsdiff Android Nov 21, 2024 Jun 4, 2018 N/A· v4 8.1 HIGH· v3 6.8 MEDIUM· v2 node-bsdiff-android downloads resources over HTTP, which leaves it vulnerable to MITM attacks. |
node-thulac is a node binding for thulac. node-thulac downloads binary resources over HTTP, which leaves it vulnerable to MITM attacks. It may be possible to cause remote code execution (RCE) by swapping out the requeste...Show more |
redis-srvr is a npm wrapper for redis-server. redis-srvr downloads binary resources over HTTP, which leaves it vulnerable to MITM attacks. It may be possible to cause remote code execution (RCE) by swapping out the reque...Show more |
js-given is a JavaScript frontend to jgiven. js-given downloads binary resources over HTTP, which leaves it vulnerable to MITM attacks. It may be possible to cause remote code execution (RCE) by swapping out the requeste...Show more |
haxe-dev is a cross-platform toolkit. haxe-dev downloads binary resources over HTTP, which leaves it vulnerable to MITM attacks. It may be possible to cause remote code execution (RCE) by swapping out the requested binar...Show more |
1Grunt Ccompiler Project 1Grunt Ccompiler Nov 21, 2024 Jun 4, 2018 N/A· v4 8.1 HIGH· v3 9.3 HIGH· v2 grunt-ccompiler is a Closure Compiler Grunt Plugin. grunt-ccompiler downloads binary resources over HTTP, which leaves it vulnerable to MITM attacks. It may be possible to cause remote code execution (RCE) by swapping ou...Show more |
1Scalajs Standalone Bin Project 1Scalajs Standalone Bin Nov 21, 2024 Jun 1, 2018 N/A· v4 8.1 HIGH· v3 9.3 HIGH· v2 scala-standalone-bin is a Binary wrapper for ScalaJS. scala-standalone-bin downloads binary resources over HTTP, which leaves it vulnerable to MITM attacks. It may be possible to cause remote code execution (RCE) by swap...Show more |
dwebp-bin is a dwebp node.js wrapper that convert WebP into PNG. dwebp-bin downloads binary resources over HTTP, which leaves it vulnerable to MITM attacks. It may be possible to cause remote code execution (RCE) by swap...Show more |
1Apk Parser2 Project 1Apk Parser2 Nov 21, 2024 Jun 1, 2018 N/A· v4 8.1 HIGH· v3 9.3 HIGH· v2 apk-parser2 is a module which extracts Android Manifest info from an APK file. apk-parser2 downloads binary resources over HTTP, which leaves it vulnerable to MITM attacks. It may be possible to cause remote code executi...Show more |
jvminstall is a module for downloading and unpacking jvm to local system. jvminstall downloads binary resources over HTTP, which leaves it vulnerable to MITM attacks. It may be possible to cause remote code execution (RC...Show more |
1Install G Test Project 1Install G Test Nov 21, 2024 Jun 1, 2018 N/A· v4 5.9 MEDIUM· v3 4.3 MEDIUM· v2 install-g-test downloads resources over HTTP, which leaves it vulnerable to MITM attacks. |
1Nw With Arm Project 1Nw With Arm Nov 21, 2024 Jun 1, 2018 N/A· v4 8.1 HIGH· v3 9.3 HIGH· v2 nw-with-arm is a NW Installer including ARM-Build. nw-with-arm downloads binary resources over HTTP, which leaves it vulnerable to MITM attacks. It may be possible to cause remote code execution (RCE) by swapping out the...Show more |
1Selenium Wrapper Project 1Selenium Wrapper Nov 21, 2024 Jun 1, 2018 N/A· v4 8.1 HIGH· v3 9.3 HIGH· v2 selenium-wrapper is a selenium server wrapper, including installation and chrome webdriver. selenium-wrapper downloads binary resources over HTTP, which leaves it vulnerable to MITM attacks. It may be possible to cause r...Show more |
mystem3 is a NodeJS wrapper for the Yandex MyStem 3. mystem3 downloads binary resources over HTTP, which leaves it vulnerable to MITM attacks. It may be possible to cause remote code execution (RCE) by swapping out the r...Show more |
1Headless Browser Lite Project 1Headless Browser Lite Nov 21, 2024 Jun 1, 2018 N/A· v4 8.1 HIGH· v3 9.3 HIGH· v2 headless-browser-lite is a minimal npm installer for phantomjs and slimerjs with no external dependencies. headless-browser-lite downloads binary resources over HTTP, which leaves it vulnerable to MITM attacks. It may be...Show more |
1Selenium Chromedriver Project 1Selenium Chromedriver Nov 21, 2024 Jun 1, 2018 N/A· v4 8.1 HIGH· v3 9.3 HIGH· v2 selenium-chromedriver is a simple utility for downloading the Selenium Webdriver for Google Chrome selenium-chromedriver downloads binary resources over HTTP, which leaves it vulnerable to MITM attacks. It may be possibl...Show more |
1Macaca Chromedriver Zxa Project 1Macaca Chromedriver Zxa Nov 21, 2024 Jun 1, 2018 N/A· v4 8.1 HIGH· v3 9.3 HIGH· v2 macaca-chromedriver-zxa is a Node.js wrapper for the selenium chromedriver. macaca-chromedriver-zxa downloads binary resources over HTTP, which leaves it vulnerable to MITM attacks. It may be possible to cause remote cod...Show more |
1Nodeschnaps Project 1Nodeschnaps Nov 21, 2024 Jun 1, 2018 N/A· v4 8.1 HIGH· v3 9.3 HIGH· v2 nodeschnaps is a NodeJS compatibility layer for Java (Rhino). nodeschnaps downloads binary resources over HTTP, which leaves it vulnerable to MITM attacks. It may be possible to cause remote code execution (RCE) by swapp...Show more |