CWE-316: CWE-316

12
Total CVEs
1
Critical
3
High
6.6
Avg CVSS

Yearly Trend

2026
1
2025
7
2024
2
2023
1
2022
1

Top Affected Vendors

1 Fortinet 1
2 Sap 1
3 Siemens 1
4 Aveva 1
5 Netgear 1
6 Meatmeet 1
7 Keepassxc 1
8 Perfood 1
9 Checkpoint 1

All CWE-316 CVEs (12)

CVE-2025-52579
9.4

Emerson ValveLink products store sensitive information like credentials or configuration data in cleartext in memory. This allows attackers to potenti...

Jul 11, 2025
CVE-2024-36792
8.2

This vulnerability in Netgear WNR614 routers allows attackers to obtain the WPS PIN through implementation flaws in the Wi-Fi Protected Setup feature....

Jun 7, 2024
CVE-2022-0835
8.1

AVEVA System Platform 2020 stores sensitive information in cleartext, allowing attackers or low-privileged users to access credentials and other confi...

Apr 11, 2022
CVE-2023-40724
7.3

QMS Automotive software versions before V12.39 store user credentials as plaintext in memory, allowing attackers who can perform memory dumps to extra...

Sep 12, 2023
CVE-2025-60794
6.5

CVE-2025-60794 exposes sensitive authentication data (session tokens and passwords) in couch-auth 0.21.2 due to improper memory clearing. This allows ...

Nov 20, 2025
CVE-2024-33900
6.5

CVE-2024-33900 allows an attacker with local system access to recover cleartext KeePassXC credentials via memory dumping techniques. This affects KeeP...

May 20, 2024
CVE-2024-24915
6.1

CVE-2024-24915 is a memory disclosure vulnerability in Check Point SmartConsole where credentials remain in memory after use. Administrators can dump ...

Jun 29, 2025
CVE-2026-24319
5.8

SAP Business One writes sensitive information to memory dump files without obfuscation, allowing attackers who access these files to potentially perfo...

Feb 10, 2026
CVE-2025-42888
5.5

CVE-2025-42888 is a local information disclosure vulnerability in SAP GUI for Windows that allows highly privileged users on the affected client PC to...

Nov 11, 2025
CVE-2025-65832
4.6

This vulnerability allows attackers with physical access to a victim's device to extract sensitive information from memory after app termination. Sens...

Dec 10, 2025
CVE-2025-61713
4.2

This vulnerability allows authenticated administrators with CLI read-write privileges in FortiPAM to obtain other administrators' credentials through ...

Nov 18, 2025
CVE-2025-4618
N/A

A local information disclosure vulnerability in Palo Alto Networks Prisma Browser allows authenticated non-admin users to access sensitive data. This ...

Nov 14, 2025

About CWE-316 (CWE-316)

Our database tracks 12 CVEs classified as CWE-316, with 1 rated critical and 3 rated high severity. The average CVSS score for CWE-316 vulnerabilities is 6.6.

External reference: View CWE-316 on MITRE CWE →

Monitor CWE-316 Vulnerabilities

Get alerted when new CWE-316 CVEs affect your infrastructure.

Start Monitoring Free