sipass_integrated vulnerabilities
CVEs whose affected-version data names the sipass_integrated package. Each record lists the affected and patched versions; check a specific version with the dependency checker or POST /api/sbom.
3 CVEsRSS
CVE-2025-40774Medium· 4.4A vulnerability has been identified in SiPass integrated (All versions < V3.0)
A vulnerability has been identified in SiPass integrated (All versions < V3.0). Affected server applications store user passwords encrypted in its database. Decryption keys are accessible to users with administrative privileges, allowing…
CVE-2025-40773Low· 3.5A vulnerability has been identified in SiPass integrated (All versions < V3.0)
A vulnerability has been identified in SiPass integrated (All versions < V3.0). Affected server applications contains a broken access control vulnerability. The authorization mechanism lacks sufficient server-side checks, allowing an att…
CVE-2025-40772High· 7.4A vulnerability has been identified in SiPass integrated (All versions < V3.0)
A vulnerability has been identified in SiPass integrated (All versions < V3.0). Affected server applications are vulnerable to stored Cross-Site Scripting (XSS), allowing an attacker to inject malicious code that can be executed by other…