CWE-210

Self-generated Error Message Containing Sensitive Information
AI Translation Available

The product identifies an error condition and creates its own diagnostic or error messages that contain sensitive information.

Status
draft
Abstraction
base

Common Consequences

confidentiality
Impacts
read application data

Potential Mitigations

Phases:
implementation build and compilation
Descriptions:
• Debugging information should not make its way into a production release.