<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom">
<channel>
  <title>CVE Daily – Token Leakage</title>
  <link>https://cvedaily.com/pages/tags/token-leak.html</link>
  <atom:link href="https://cvedaily.com/feed-tags/token-leak.xml" rel="self" type="application/rss+xml"/>
  <description>CVE Daily – Token Leakage</description>
  <language>en</language>
  <lastBuildDate>Wed, 03 Jun 2026 21:26:53 +0000</lastBuildDate>
  <item>
    <title>[Medium] CVE-2026-31610 – In the Linux kernel, the following vulnerability has been resolved:

ksmbd: fix ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-31610</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-31610</guid>
    <pubDate>Fri, 24 Apr 2026 15:16:40 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2026-31610</strong></p>
  <p>In the Linux kernel, the following vulnerability has been resolved:  ksmbd: fix mechToken leak when SPNEGO decode fails after token alloc  The kernel ASN.1 BER decoder calls action callbacks incrementally as it walks the input.  When ksmbd_decode_negTokenInit() reaches the mechToken [2] OCTET STRING element, ksmbd_neg_token_alloc() allocates conn->mechToken immediately via kmemdup_nul().  If a la…</p>
  <p><strong>CVSS:</strong> 5.5 · <strong>CWE:</strong> CWE-401</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-31610">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2026-39963 – Serendipity is a PHP-powered weblog engine. In versions 2.6-beta2  and below, th...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-39963</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-39963</guid>
    <pubDate>Wed, 15 Apr 2026 04:17:39 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2026-39963</strong></p>
  <p>Serendipity is a PHP-powered weblog engine. In versions 2.6-beta2  and below, the serendipity_setCookie() function in include/functions_config.inc.php uses $_SERVER['HTTP_HOST'] without validation as the domain parameter of setcookie(). An attacker who can influence the Host header at login time, such as via MITM, reverse proxy misconfiguration, or load balancer manipulation, can force authentica…</p>
  <p><strong>CVSS:</strong> 6.9 · <strong>CWE:</strong> CWE-565</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-39963">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2025-15617 – Wazuh version 4.12.0 contains an exposure vulnerability in GitHub Actions workfl...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-15617</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-15617</guid>
    <pubDate>Fri, 27 Mar 2026 18:16:03 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2025-15617</strong></p>
  <p>Wazuh version 4.12.0 contains an exposure vulnerability in GitHub Actions workflow artifacts that allows attackers to extract the GITHUB_TOKEN from uploaded artifacts. Attackers can use the exposed token within a limited time window to perform unauthorized actions such as pushing malicious commits or altering release tags.</p>
  <p><strong>CVSS:</strong> 6.5 · <strong>CWE:</strong> CWE-522</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-15617">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-30845 – Wekan is an open source kanban tool built with Meteor. In versions 8.31.0 throug...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-30845</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-30845</guid>
    <pubDate>Fri, 06 Mar 2026 20:16:17 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-30845</strong></p>
  <p>Wekan is an open source kanban tool built with Meteor. In versions 8.31.0 through 8.33, the board composite publication in Wekan publishes all integration data for a board without any field filtering, exposing sensitive fields including webhook URLs and authentication tokens to any subscriber. Since board publications are accessible to all board members regardless of their role (including read-on…</p>
  <p><strong>CVSS:</strong> 8.2 · <strong>CWE:</strong> CWE-200</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-30845">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-48635 – In multiple functions of TaskFragmentOrganizerController.java, there is a possib...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-48635</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-48635</guid>
    <pubDate>Mon, 02 Mar 2026 19:16:27 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-48635</strong></p>
  <p>In multiple functions of TaskFragmentOrganizerController.java, there is a possible activity token leak due to a logic error in the code. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.</p>
  <p><strong>CVSS:</strong> 7.7 · <strong>CWE:</strong> CWE-200</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-48635">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2024-5386 – In lunary-ai/lunary version 1.2.2, an account hijacking vulnerability exists due...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-5386</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-5386</guid>
    <pubDate>Mon, 02 Feb 2026 11:16:16 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2024-5386</strong></p>
  <p>In lunary-ai/lunary version 1.2.2, an account hijacking vulnerability exists due to a password reset token leak. A user with a 'viewer' role can exploit this vulnerability to hijack another user's account by obtaining the password reset token. The vulnerability is triggered when the 'viewer' role user sends a specific request to the server, which responds with a password reset token in the 'recov…</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-1125</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-5386">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-66035 – Angular is a development platform for building mobile and desktop web applicatio...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-66035</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-66035</guid>
    <pubDate>Wed, 26 Nov 2025 23:15:49 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-66035</strong></p>
  <p>Angular is a development platform for building mobile and desktop web applications using TypeScript/JavaScript and other languages. Prior to versions 19.2.16, 20.3.14, and 21.0.1, there is a XSRF token leakage via protocol-relative URLs in angular HTTP clients. The vulnerability is a Credential Leak by App Logic that leads to the unauthorized disclosure of the Cross-Site Request Forgery (XSRF) to…</p>
  <p><strong>CVSS:</strong> 7.7 · <strong>CWE:</strong> CWE-201</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-66035">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2022-40223 – Nonce token leakage and missing authorization in SearchWP premium plugin &lt;= 4.2...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2022-40223</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2022-40223</guid>
    <pubDate>Tue, 08 Nov 2022 19:15:14 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2022-40223</strong></p>
  <p>Nonce token leakage and missing authorization in SearchWP premium plugin <= 4.2.5 on WordPress leading to plugin settings change.</p>
  <p><strong>CVSS:</strong> 5.4 · <strong>CWE:</strong> CWE-862</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2022-40223">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2022-32227 – A cleartext transmission of sensitive information exists in Rocket.Chat &lt;v5, &lt;v4...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2022-32227</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2022-32227</guid>
    <pubDate>Fri, 23 Sep 2022 19:15:11 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2022-32227</strong></p>
  <p>A cleartext transmission of sensitive information exists in Rocket.Chat <v5, <v4.8.2 and <v4.7.5 relating to Oauth tokens by having the permission "view-full-other-user-info", this could cause an oauth token leak in the product.</p>
  <p><strong>CVSS:</strong> 6.5 · <strong>CWE:</strong> CWE-319</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2022-32227">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2022-23067 – ToolJet versions v0.5.0 to v1.2.2 are vulnerable to token leakage via Referer he...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2022-23067</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2022-23067</guid>
    <pubDate>Wed, 18 May 2022 14:15:08 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2022-23067</strong></p>
  <p>ToolJet versions v0.5.0 to v1.2.2 are vulnerable to token leakage via Referer header that leads to account takeover . If the user opens the invite link/signup link and then clicks on any external links within the page, it leaks the password set token/signup token in the referer header. Using these tokens the attacker can access the user’s account.</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-200</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2022-23067">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2022-23064 – In Snipe-IT, versions v3.0-alpha to v5.3.7 are vulnerable to Host Header Injecti...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2022-23064</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2022-23064</guid>
    <pubDate>Mon, 02 May 2022 13:15:08 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2022-23064</strong></p>
  <p>In Snipe-IT, versions v3.0-alpha to v5.3.7 are vulnerable to Host Header Injection. By sending a specially crafted host header in the reset password request, it is possible to send password reset links to users which once clicked lead to an attacker controlled server and thus leading to password reset token leak. This leads to account take over.</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-74</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2022-23064">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2022-25602 – Nonce token leak vulnerability leading to arbitrary file upload, theme deletion,...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2022-25602</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2022-25602</guid>
    <pubDate>Fri, 18 Mar 2022 18:15:16 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2022-25602</strong></p>
  <p>Nonce token leak vulnerability leading to arbitrary file upload, theme deletion, plugin settings change discovered in Responsive Menu WordPress plugin (versions <= 4.1.7).</p>
  <p><strong>CVSS:</strong> 8.3 · <strong>CWE:</strong> CWE-200</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2022-25602">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2019-4008 – API Connect V2018.1 through 2018.4.1.1 is impacted by access token leak. Authori...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2019-4008</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2019-4008</guid>
    <pubDate>Thu, 07 Feb 2019 15:29:00 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2019-4008</strong></p>
  <p>API Connect V2018.1 through 2018.4.1.1 is impacted by access token leak. Authorization tokens in some URLs can result in the tokens being written to log files. IBM X-Force ID: 155626.</p>
  <p><strong>CVSS:</strong> 9.8 · <strong>CWE:</strong> CWE-532</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2019-4008">View on NVD</a></p>
]]>
    </description>
  </item>
</channel>
</rss>
