CWE-312

Cleartext Storage of Sensitive Information

Parent: CWE-311 - Missing Encryption of Sensitive Data

The product stores sensitive information in cleartext within a resource that might be accessible to another control sphere.

817 vulnerabilities with CWE-312
CVE-2026-23655 MEDIUM
Azure Compute Gallery - Info Disclosure
CVSS 6.5
CVE-2026-24319 MEDIUM
SAP Business One - Cleartext Storage of Sensitive Information in Memory
CVSS 5.8
CVE-2026-25751 HIGH
FUXA < 1.2.10 - Unauthenticated Information Disclosure of Database Credentials
CVSS 7.5
CVE-2026-22276 MEDIUM
Dell ECS <3.8.1.7 & Dell ObjectScale <4.2.0.0 - Info Disclosure
CVSS 5.5
CVE-2026-22240 HIGH
BLUVOYIX - Unauthenticated Exposure of Sensitive Information via Users API
CVSS 7.5
CVE-2025-14815 CRITICAL
Information Disclosure, Tampering, and Denial-of-Service Vulnerabilities in GENESIS64, ICONICS Suite, MobileHMI, Hyper Historian, AnalytiX, GENESIS, and MC Works64
CVE-2025-55717 MEDIUM
Fortinet FortiMail/FortiRecorder/FortiVoice - Info Disclosure
CVSS 4.0
CVE-2025-36105 MEDIUM
IBM Planning Analytics Advanced 3.1.0-3.1.4 - Info Disclosure
CVSS 4.4
CVE-2025-70050 MEDIUM
lesspass v9.6.9 - Cleartext Storage of Sensitive Information
CVSS 6.5
CVE-2025-47147 MEDIUM
Command Centre Mobile Client <9.40.123 - Info Disclosure
CVSS 5.7
CVE-2025-10464 MEDIUM
Birtech Senseway <09022026 - Info Disclosure
CVSS 6.5
CVE-2025-33081 LOW
IBM Concert <2.1.0 - Info Disclosure
CVSS 3.3
CVE-2025-12774 HIGH
Brocade SANnav <3.0 - Info Disclosure
CVSS 7.5
CVE-2025-12772 MEDIUM
Brocade SANnav <2.4.0b - Info Disclosure
CVSS 4.9
CVE-2025-12680 MEDIUM
Brocade SANnav <2.4.0b - Info Disclosure
CVSS 4.9
CVE-2025-12679 MEDIUM
Brocade SANnav <2.4.0b - Info Disclosure
CVSS 6.5
CVE-2025-59105 HIGH
dormakaba Access Manager 92xx-k5 and 92xx-k7 - Cleartext Storage of Sensitive Information
CVE-2025-59102 MEDIUM
dormakaba Access Manager 92xx-k5 < XAMB 04.06.212 - Cleartext Storage of Sensitive Information in Database Backup
CVE-2025-14377 HIGH
Verve Asset Manager - Info Disclosure
CVE-2025-14836 LOW
ZZCMS 2025 - Cleartext Storage of Sensitive Information in User Data Storage Module
CVSS 2.7
CVE-2025-11009 MEDIUM
Mitsubishi Electric GT Designer3 - Info Disclosure
CVSS 5.1
CVE-2025-65826 CRITICAL
meatmeet - Cleartext Storage of Sensitive Wi-Fi Credentials
CVSS 9.8
CVE-2025-34428 HIGH
MailEnable < 10.54 - Cleartext Storage of Sensitive Information in AUTH.SAV
CVSS 7.8
CVE-2025-34427 HIGH
MailEnable < 10.54 - Cleartext Storage of Sensitive Information in AUTH.TAB
CVSS 7.8
CVE-2025-67638 MEDIUM
Jenkins < 2.528.3 and 2.529-2.540 - Cleartext Storage of Sensitive Information in Job Configuration Form
CVSS 4.3
Details
Vulnerabilities 817