VulnSea

CWE-312

CVEs classified under CWE-312, newest first.

47 CVEsRSS

CVE-2026-93764Medium· 6.5
3d ago

Mongoid may omit encryption rules for fields declared on embedded models when generating the client-side field-level encryption schema

Mongoid may omit encryption rules for fields declared on embedded models when generating the client-side field-level encryption schema. Applications that enable this feature can therefore store values intended to be encrypted in readable…

SunlitMongoDB Inc. · MongoidEPSS 0.10%via NVD
CVE-2026-93763Medium· 6.5
3d ago

A protection mechanism failure in the object-document mapper's encryption configuration generation can cause fields that an application declared for client-side field-level encryption to be written and kept in cleartext, without any erro…

A protection mechanism failure in the object-document mapper's encryption configuration generation can cause fields that an application declared for client-side field-level encryption to be written and kept in cleartext, without any erro…

SunlitMongoDB Inc. · MongoidEPSS 0.10%via NVD
CVE-2026-63406Medium· 5.9PoC
3d ago

AnyCable is a realtime server for reliable two-way communication that supports any backend

AnyCable is a realtime server for reliable two-way communication that supports any backend. Prior to 1.6.15, the telemetry subsystem in telemetry/config.go enables tracking with a hardcoded public authToken, while clusterFingerprint in t…

Twilightanycable · github.com/anycable/anycableEPSS 0.24%via NVD
CVE-2026-81321Critical· 9.8
3d ago

CM2507 IP cameras store configured wireless network credentials in cleartext within the device filesystem

CM2507 IP cameras store configured wireless network credentials in cleartext within the device filesystem. An attacker who obtains filesystem access through physical access, a debugging interface, or another vulnerability could recover t…

MidnightCareCam · HMT.CM2507 FirmwareEPSS 0.20%via NVD
CVE-2026-44940Medium· 5.7
4d ago

The rancher-extension-stackstate extension in SUSE Observability exposes service tokens in plain configuration or insecure locations rather than managing them securely

The rancher-extension-stackstate extension in SUSE Observability exposes service tokens in plain configuration or insecure locations rather than managing them securely. An attacker with minimal access could obtain the token to gain unaut…

SunlitSUSE · rancher-extension-stackstateEPSS 0.13%via NVD
CVE-2026-86443Medium· 6.9
5d ago

Cleartext storage of sensitive information in the DuoxMe application for Android, in versions prior to 4.3.4, allows an attacker with local access to the device to retrieve the credentials stored by the application and impersonate the us…

Cleartext storage of sensitive information in the DuoxMe application for Android, in versions prior to 4.3.4, allows an attacker with local access to the device to retrieve the credentials stored by the application and impersonate the us…

SunlitFermax Electronica S.A.U. · com.fermax.blue.appEPSS 0.10%via NVD
CVE-2026-90842Low· 3.7PoC
6d ago

A weakness has been identified in PHPGurukul Blood Donor Management System 1.0

A weakness has been identified in PHPGurukul Blood Donor Management System 1.0. Affected by this issue is some unknown functionality of the file application/models/admin/Login_Model.php. This manipulation of the argument password/email/c…

TwilightPHPGurukul · Blood Donor Management SystemEPSS 0.20%via NVD
CVE-2026-4130High· 7.1
1w ago

There is a storage of sensitive information in cleartext vulnerability in NI SystemLink

There is a storage of sensitive information in cleartext vulnerability in NI SystemLink. This vulnerability may allow an attacker with local access to obtain sensitive information stored by the system in the clear.  This vulnerability af…

TwilightNI · SystemLinkEPSS 0.07%via NVD
CVE-2026-80058Medium· 5.5
2w ago

Dell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior to 5.36.00.00, contains a Cleartext Storage of Sensitive Information vulnerability

Dell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior to 5.36.00.00, contains a Cleartext Storage of Sensitive Information vulnerability. A low privileged attacker with local access could potenti…

Sunlitdell · secure_connect_gatewayEPSS 0.07%via NVD
CVE-2026-86280Medium· 5.3PoC
2w ago

A vulnerability was identified in SourceCodester Syllabus-Aligned Learning Management & Examination System 1.0

A vulnerability was identified in SourceCodester Syllabus-Aligned Learning Management & Examination System 1.0. This affects an unknown function of the file cict_portal.sql. Such manipulation leads to cleartext storage of sensitive infor…

TwilightSourceCodester · Syllabus-Aligned Learning Management & Examination SystemEPSS 0.21%via NVD
CVE-2026-53603High· 7.1
2w ago

nebula-mesh is a self-hosted control plane for Slack Nebula mesh VPN

nebula-mesh is a self-hosted control plane for Slack Nebula mesh VPN. Prior to version 0.3.8, Operator session tokens are stored in plaintext in the operator_sessions table (the token column is the PRIMARY KEY). The session token is a 32…

Twilightforgekeep · nebula-meshEPSS 0.20%via NVD
CVE-2026-82640Medium· 5.5
3w ago

browser-use web-ui versions 2.0.0 through 3.0.0 write configured LLM API keys to disk in cleartext without encryption or access restrictions

browser-use web-ui versions 2.0.0 through 3.0.0 write configured LLM API keys to disk in cleartext without encryption or access restrictions. Attackers with read access to the temporary settings directory can recover provider API keys fr…

SunlitEPSS 0.06%via NVD
CVE-2026-77970None
3w ago

Cleartext Storage of Sensitive Information vulnerability in ash-project ash_paper_trail allows an attacker with read access to the generated version resource to recover sensitive values nested inside embedded resources, unions, or lists.…

Cleartext Storage of Sensitive Information vulnerability in ash-project ash_paper_trail allows an attacker with read access to the generated version resource to recover sensitive values nested inside embedded resources, unions, or lists.…

SunlitEPSS 0.10%via NVD
CVE-2026-75847None
3w ago

Cleartext Storage of Sensitive Information vulnerability in ash-project ash_paper_trail allows an attacker with read access to the generated version resource to recover the plaintext of sensitive? attributes. AshPaperTrail stores the va…

Cleartext Storage of Sensitive Information vulnerability in ash-project ash_paper_trail allows an attacker with read access to the generated version resource to recover the plaintext of sensitive? attributes. AshPaperTrail stores the va…

SunlitEPSS 0.10%via NVD
CVE-2026-61798High· 8.1
1mo ago

netty-incubator-codec-ohttp: BoringSSL HPKE private key bytes exposed through toString() and exception messages

netty-incubator-codec-ohttp: BoringSSL HPKE private key bytes exposed through toString() and exception messages

Twilightnetty · io.netty.incubator:netty-incubator-codec-ohttp-hpke-classes-boringsslvia GHSA
CVE-2026-73834Medium· 5.5
1mo ago

A flaw was found in the must-gather component of Red Hat Advanced Cluster Management for Kubernetes

A flaw was found in the must-gather component of Red Hat Advanced Cluster Management for Kubernetes. Certain ACM wrapper Custom Resources that embed Secret data are collected without redaction. When an administrator runs must-gather, cre…

SunlitRed Hat · Red Hat Advanced Cluster Management for Kubernetes 2.11EPSS 0.08%via NVD
CVE-2026-66016Medium· 6.7
1mo ago

Under specific self-hosted Helm configurations, generated TLS private keys may be retained in rendered manifests accessible to highly privileged local users.

Under specific self-hosted Helm configurations, generated TLS private keys may be retained in rendered manifests accessible to highly privileged local users.

Sunlitjfrog · artifactoryEPSS 0.09%via NVD
CVE-2026-68970Medium· 6.5
1mo ago

Apache Airflow's Task SDK did not mask the contents of a Variable whose JSON value is a list, so secrets stored in that shape appeared in cleartext in task logs and in the Rendered Templates UI

Apache Airflow's Task SDK did not mask the contents of a Variable whose JSON value is a list, so secrets stored in that shape appeared in cleartext in task logs and in the Rendered Templates UI. Masking was applied only when the deserial…

Sunlitapache · airflowEPSS 0.23%via NVD
CVE-2026-59244Medium· 6.5
1mo ago

Apache Airflow's secrets masker did not mask `var.json` Variable values whose value is a dict in the Rendered Templates UI — the dict value failed an `isinstance(str)` guard — so a secret stored as a JSON Variable and referenced in a tem…

Apache Airflow's secrets masker did not mask `var.json` Variable values whose value is a dict in the Rendered Templates UI — the dict value failed an `isinstance(str)` guard — so a secret stored as a JSON Variable and referenced in a tem…

Sunlitapache · airflowEPSS 0.23%via NVD
CVE-2026-47702None
1mo ago

TypeBot is a chatbot builder tool

TypeBot is a chatbot builder tool. In version 3.16.1, API tokens (bearer credentials used to authenticate against the builder API) are stored in the database as cleartext strings. An attacker who gains read access to the database (e.g., …

SunlitEPSS 0.20%via NVD
CVE-2026-18710Medium· 6.5
1mo ago

A MongoDB driver component could write sensitive configuration information, including a credential used for outbound network connectivity, to application log output in cleartext during routine client initialization

A MongoDB driver component could write sensitive configuration information, including a credential used for outbound network connectivity, to application log output in cleartext during routine client initialization. This occurs automatic…

SunlitRed Hat · Red Hat build of Apache Camel 4 for Quarkus 3EPSS 0.12%via NVD
CVE-2026-61928Medium· 5.5
1mo ago

Cleartext storage of sensitive information in Windows Hello allows an authorized attacker to perform tampering locally.

Cleartext storage of sensitive information in Windows Hello allows an authorized attacker to perform tampering locally.

Sunlitmicrosoft · windows_10_1607EPSS 0.21%via NVD
CVE-2026-20312High· 8.8
1mo ago

As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco Catalyst SD-WAN engineering team has conducted a comprehensive internal security review

As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco Catalyst SD-WAN engineering team has conducted a comprehensive internal security review. This review resulted in software hardening releases that …

TwilightEPSS 0.26%via NVD
CVE-2026-55985Medium· 4.3
1mo ago

The web management interface in Tycon Systems TPDIN-Monitor-WEB2 stores and displays system credentials in cleartext on a certain configuration page accessible to authenticated users

The web management interface in Tycon Systems TPDIN-Monitor-WEB2 stores and displays system credentials in cleartext on a certain configuration page accessible to authenticated users. Any party with access to the administrative dashboar…

SunlitEPSS 0.13%via NVD
GHSA-mhvh-gwhr-76pwMedium
2mo ago

Duplicate Advisory: Google Service Account Private Key Exposed in JWT Header

Duplicate Advisory: Google Service Account Private Key Exposed in JWT Header

Sunlitn8n · n8nvia GHSA
CVE-2026-65599Medium
2mo ago

n8n: Google Service Account Private Key Exposed in JWT Header

n8n: Google Service Account Private Key Exposed in JWT Header

Sunlitn8n · n8nEPSS 0.15%via GHSA
CVE-2026-13380High· 7.5
2mo ago

VSee Clinic 7.1.26 and VSee Clinic API 1.3.0 exposes cleartext SFTP credentials in the HTTP responses of three unauthenticated endpoints

VSee Clinic 7.1.26 and VSee Clinic API 1.3.0 exposes cleartext SFTP credentials in the HTTP responses of three unauthenticated endpoints. The credentials are present in these responses only when SFTP connections have been configured with…

Twilightvsee · clinicEPSS 0.24%via NVD
CVE-2026-16213Low· 3.3
2mo ago

A security flaw has been discovered in Fantomas42 django-blog-zinnia up to 0.20

A security flaw has been discovered in Fantomas42 django-blog-zinnia up to 0.20. Affected by this vulnerability is an unknown functionality of the file zinnia/views/mixins/entry_protection.py of the component Protected Entry Password Han…

SunlitEPSS 0.11%via NVD
CVE-2026-8804None
2mo ago

Puppet resource_api (shipped in Puppet Core 8.x and Puppet Enterprise 2023.8.x and 2025.x) does not preserve the sensitive flag on parameters defined via the resource-api, causing values such as passwords to be stored in cleartext in the…

Puppet resource_api (shipped in Puppet Core 8.x and Puppet Enterprise 2023.8.x and 2025.x) does not preserve the sensitive flag on parameters defined via the resource-api, causing values such as passwords to be stored in cleartext in the…

SunlitEPSS 0.11%via NVD
CVE-2026-50267Medium· 4.7
2mo ago

Steeltoe: TLS private keys written to /tmp with default permissions, never deleted

Steeltoe: TLS private keys written to /tmp with default permissions, never deleted

SunlitSteeltoe · Steeltoe.Configuration.AbstractionsEPSS 0.07%via GHSA
CWE-312 vulnerabilities (CVEs) · VulnSea