VulnSea

CWE-312

CVEs classified under CWE-312, newest first.

59 CVEsRSS

CVE-2026-61928Medium· 5.5
1mo ago

Cleartext storage of sensitive information in Windows Hello allows an authorized attacker to perform tampering locally.

Cleartext storage of sensitive information in Windows Hello allows an authorized attacker to perform tampering locally.

▾ Sunlitmicrosoft · windows_10_1607EPSS 0.23%via NVD
CVE-2026-13505High· 7.5
1mo ago

org.bouncycastle/bc-fips: Bouncy Castle for Java FIPS: Sensitive key material remains in memory due to delayed zeroisation (CVE-2026-13505)

A flaw was found in Bouncy Castle for Java FIPS (BC-FJA). Sensitive cryptographic key material, intended to be securely erased from memory (zeroised) upon garbage collection, may persist longer than expected. This occurs because the zerois…

▾ TwilightRed Hat · Red Hat JBoss Enterprise Application Platform Expansion PackEPSS 0.25%via CSAF
CVE-2026-20312High· 8.8
1mo ago

As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco Catalyst SD-WAN engineering team has conducted a comprehensive internal security review

As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco Catalyst SD-WAN engineering team has conducted a comprehensive internal security review. This review resulted in software hardening releases that …

▾ TwilightEPSS 0.31%via NVD
CVE-2026-55985Medium· 4.3
2mo ago

The web management interface in Tycon Systems TPDIN-Monitor-WEB2 stores and displays system credentials in cleartext on a certain configuration page accessible to authenticated users

The web management interface in Tycon Systems TPDIN-Monitor-WEB2 stores and displays system credentials in cleartext on a certain configuration page accessible to authenticated users. Any party with access to the administrative dashboar…

▾ SunlitEPSS 0.19%via NVD
GHSA-mhvh-gwhr-76pwMedium
2mo ago

Duplicate Advisory: Google Service Account Private Key Exposed in JWT Header

Duplicate Advisory: Google Service Account Private Key Exposed in JWT Header

▾ Sunlitn8n · n8nvia GHSA
CVE-2026-65599Medium
2mo ago

n8n: Google Service Account Private Key Exposed in JWT Header

n8n: Google Service Account Private Key Exposed in JWT Header

▾ Sunlitn8n · n8nEPSS 0.25%via GHSA
CVE-2026-13380High· 7.5
2mo ago

VSee Clinic 7.1.26 and VSee Clinic API 1.3.0 exposes cleartext SFTP credentials in the HTTP responses of three unauthenticated endpoints

VSee Clinic 7.1.26 and VSee Clinic API 1.3.0 exposes cleartext SFTP credentials in the HTTP responses of three unauthenticated endpoints. The credentials are present in these responses only when SFTP connections have been configured with…

▾ Twilightvsee · clinicEPSS 0.39%via NVD
CVE-2026-16213Low· 3.3
2mo ago

A security flaw has been discovered in Fantomas42 django-blog-zinnia up to 0.20

A security flaw has been discovered in Fantomas42 django-blog-zinnia up to 0.20. Affected by this vulnerability is an unknown functionality of the file zinnia/views/mixins/entry_protection.py of the component Protected Entry Password Han…

▾ SunlitEPSS 0.11%via NVD
CVE-2026-8804None
2mo ago

Puppet resource_api (shipped in Puppet Core 8.x and Puppet Enterprise 2023.8.x and 2025.x) does not preserve the sensitive flag on parameters defined via the resource-api, causing values such as passwords to be stored in cleartext in the…

Puppet resource_api (shipped in Puppet Core 8.x and Puppet Enterprise 2023.8.x and 2025.x) does not preserve the sensitive flag on parameters defined via the resource-api, causing values such as passwords to be stored in cleartext in the…

▾ SunlitEPSS 0.11%via NVD
CVE-2026-50267Medium· 4.7
2mo ago

Steeltoe: TLS private keys written to /tmp with default permissions, never deleted

Steeltoe: TLS private keys written to /tmp with default permissions, never deleted

▾ SunlitSteeltoe · Steeltoe.Configuration.AbstractionsEPSS 0.08%via GHSA
CVE-2026-57287Medium· 4.3
3mo ago

Jenkins Job Configuration History Plugin doesn't redact encrypted values of secrets in job and agent configurations

Jenkins Job Configuration History Plugin doesn't redact encrypted values of secrets in job and agent configurations

▾ Sunlitjenkins-ci · org.jenkins-ci.plugins:jobConfigHistoryEPSS 0.19%via GHSA
GHSA-ghmh-jhmj-wcmfMedium
3mo ago

nebula-mesh's stores enrollment tokens unhashed in SQLite

nebula-mesh's stores enrollment tokens unhashed in SQLite

▾ Sunlitjuev · github.com/juev/nebula-meshvia GHSA
CVE-2026-55885Medium· 6.8
3mo ago

Grav: Admin Backup Zip File Exposes Account Credentials and Configuration Secrets

Grav: Admin Backup Zip File Exposes Account Credentials and Configuration Secrets

▾ Sunlitgetgrav · getgrav/gravEPSS 0.27%via GHSA
CVE-2026-42151High· 7.5
4mo ago

Prometheus is an open-source monitoring system and time series database

Prometheus is an open-source monitoring system and time series database. Prior to versions 3.5.3 and 3.11.3, the client_secret field in the Azure AD remote write OAuth configuration (storage/remote/azuread) was typed as string instead of…

▾ Twilightprometheus · prometheusEPSS 0.41%via NVD
CVE-2026-7163Medium· 6.1
5mo ago

A vulnerability in the assisted-service REST API, an optional Assisted Installer (assisted-service) component in the Multicluster Engine (MCE), allows an authenticated user with minimal namespace-scoped privileges to obtain administrativ…

A vulnerability in the assisted-service REST API, an optional Assisted Installer (assisted-service) component in the Multicluster Engine (MCE), allows an authenticated user with minimal namespace-scoped privileges to obtain administrativ…

▾ Sunlitredhat · multicluster_engine_for_kubernetesEPSS 0.20%via NVD
CVE-2026-5531Medium· 5.3
5mo ago

A vulnerability has been found in SourceCodester Student Result Management System 1.0

A vulnerability has been found in SourceCodester Student Result Management System 1.0. Impacted is an unknown function of the file /login_credentials.txt of the component HTTP GET Request Handler. The manipulation leads to cleartext stor…

▾ SunlitEPSS 0.32%via NVD
CVE-2026-34214High· 7.7
6mo ago

Trino is a distributed SQL query engine for big data analytics

Trino is a distributed SQL query engine for big data analytics. From version 439 to before version 480, Iceberg connector REST catalog static credentials (access key) or vended credentials (temporary access key) are accessible to users t…

▾ Twilighttrino · trinoEPSS 0.24%via NVD
CVE-2026-31848Critical· 9.8
6mo ago

Nexxt Solutions Nebula 300+ firmware through version 12.01.01.37 uses the ecos_pw cookie for authentication, which contains Base64-encoded credential data combined with a static suffix

Nexxt Solutions Nebula 300+ firmware through version 12.01.01.37 uses the ecos_pw cookie for authentication, which contains Base64-encoded credential data combined with a static suffix. Because the encoding is reversible and lacks integr…

▾ Midnightnexxtsolutions · nebula300plus_firmwareEPSS 0.46%via NVD
CVE-2025-47147Medium· 5.7
6mo ago

Cleartext Storage of Sensitive Information (CWE-312) in the Command Centre Mobile Client on Android and iOS could allow an attacker with access to a logged-in Operator's mobile device to extract the session token and exploit access for a…

Cleartext Storage of Sensitive Information (CWE-312) in the Command Centre Mobile Client on Android and iOS could allow an attacker with access to a logged-in Operator's mobile device to extract the session token and exploit access for a…

▾ Sunlitgallagher · command_centre_mobileEPSS 0.07%via NVD
CVE-2024-58277None
9mo ago

R Radio Network FM Transmitter 1.07 allows unauthenticated attackers to access the admin user's password through the system.cgi endpoint, enabling authentication bypass and FM station setup access.

R Radio Network FM Transmitter 1.07 allows unauthenticated attackers to access the admin user's password through the system.cgi endpoint, enabling authentication bypass and FM station setup access.

▾ SunlitEPSS 0.43%via NVD
CVE-2025-59701Medium· 4.1
9mo ago

Entrust nShield Connect XC, nShield 5c, and nShield HSMi through 13.6.11, or 13.7 (patched in 13.6.12 (LTS) and 13.9.0 (STS)), allow a physically proximate attacker (with elevated privileges) to read and modify the Appliance SSD contents…

Entrust nShield Connect XC, nShield 5c, and nShield HSMi through 13.6.11, or 13.7 (patched in 13.6.12 (LTS) and 13.9.0 (STS)), allow a physically proximate attacker (with elevated privileges) to read and modify the Appliance SSD contents…

▾ Sunlitentrust · nshield_connect_xc_high_firmwareEPSS 0.19%via NVD
CVE-2025-25613High· 7.5
10mo ago

FS Inc S3150-8T2F 8-Port Gigabit Ethernet L2+ Switch, 8 x Gigabit RJ45, with 2 x 1Gb SFP, Fanless

FS Inc S3150-8T2F 8-Port Gigabit Ethernet L2+ Switch, 8 x Gigabit RJ45, with 2 x 1Gb SFP, Fanless. All versions before 2.2.0D Build 135103 were discovered to transmit cookies for their web based administrative application containing user…

▾ Twilightfs · s3150-8t2f_firmwareEPSS 0.23%via NVD
CVE-2024-40582High· 7.5
1y ago

Pentaminds CuroVMS v2.0.1 was discovered to contain exposed sensitive information.

Pentaminds CuroVMS v2.0.1 was discovered to contain exposed sensitive information.

▾ Twilightpentaminds · curovmsEPSS 0.31%via NVD
CVE-2023-51702Medium· 6.5
2y ago

Since version 5.2.0, when using deferrable mode with the path of a Kubernetes configuration file for authentication, the Airflow worker serializes this configuration file as a dictionary and sends it to the triggerer by storing it in met…

Since version 5.2.0, when using deferrable mode with the path of a Kubernetes configuration file for authentication, the Airflow worker serializes this configuration file as a dictionary and sends it to the triggerer by storing it in met…

▾ Sunlitapache · airflowEPSS 0.39%via NVD
CVE-2022-4312Medium· 5.5
3y ago

A cleartext storage of sensitive information vulnerability exists in PcVue versions 8.10 through 15.2.3

A cleartext storage of sensitive information vulnerability exists in PcVue versions 8.10 through 15.2.3. This could allow an unauthorized user with access the email and short messaging service (SMS) accounts configuration files to disco…

▾ Sunlitarcinfo · pcvueEPSS 0.12%via NVD
CVE-2022-2569Medium· 5.5
4y ago

The affected device stores sensitive information in cleartext, which may allow an authenticated user to access session data stored in the OAuth database belonging to legitimate users

The affected device stores sensitive information in cleartext, which may allow an authenticated user to access session data stored in the OAuth database belonging to legitimate users

▾ Sunlitarcinfo · pcvueEPSS 0.14%via NVD
CVE-2021-45025High· 7.5
4y ago

ASG technologies ( A Rocket Software Company) ASG-Zena Cross Platform Server Enterprise Edition 4.2.1 is vulnerable to Cleartext Storage of Sensitive Information in a Cookie.

ASG technologies ( A Rocket Software Company) ASG-Zena Cross Platform Server Enterprise Edition 4.2.1 is vulnerable to Cleartext Storage of Sensitive Information in a Cookie.

▾ Twilightrocketsoftware · ags-zenaEPSS 0.58%via NVD
CVE-2021-42642High· 7.5
4y ago

PrinterLogic Web Stack versions 19.1.1.13 SP9 and below are vulnerable to an Insecure Direct Object Reference (IDOR) vulnerability that allows an unauthenticated attacker to disclose the plaintext console username and password for a prin…

PrinterLogic Web Stack versions 19.1.1.13 SP9 and below are vulnerable to an Insecure Direct Object Reference (IDOR) vulnerability that allows an unauthenticated attacker to disclose the plaintext console username and password for a prin…

▾ Twilightprinterlogic · web_stackEPSS 1.4%via NVD
CVE-2021-28937High· 7.5PoC
5y ago

The /password.html page of the Web management interface of the Acexy Wireless-N WiFi Repeater REV 1.0 (28.08.06.1) contains the administrator account password in plaintext

The /password.html page of the Web management interface of the Acexy Wireless-N WiFi Repeater REV 1.0 (28.08.06.1) contains the administrator account password in plaintext. The page can be intercepted on HTTP.

▾ Midnightacexy · wireless-n_wifi_repeater_firmwareEPSS 4.2%via NVD
CWE-312 vulnerabilities (CVEs) — page 2 · VulnSea