CWE-312
Cleartext Storage of Sensitive Information
The product stores sensitive information in cleartext within a resource that might be accessible to another control sphere.
804 vulnerabilities with CWE-312
CVE-2025-48428
MEDIUM
Gallagher Morpho <9.20.2819(MR4),<9.10.3672(MR7),<9.00.3831(MR8),<8...
CVSS 6.7
CVE-2025-55334
MEDIUM
Windows 11 22H2-25H2 - Cleartext Storage of Sensitive Information in Kernel
CVSS 6.2
CVE-2025-21061
HIGH
Samsung Smart Switch < 3.7.67.2 - Cleartext Storage of Sensitive Information
CVSS 7.1
CVE-2025-21060
MEDIUM
Samsung Smart Switch < 3.7.67.2 - Cleartext Storage of Sensitive Backup Data
CVSS 5.5
CVE-2025-59450
MEDIUM
YoSmart YoLink Smart Hub firmware 0382 - Info Disclosure
CVSS 4.3
CVE-2025-59409
HIGH
Flock Safety Falcon and Sparrow License Plate Readers OPM1.171019.026 - Cleartext Storage of Sensitive Wi-Fi Credentials
CVSS 7.5
CVE-2025-23291
LOW
NVIDIA Delegated Licensing - Info Disclosure
CVSS 2.4
CVE-2025-34216
CRITICAL
Vasion Print Virtual Appliance < 22.0.1026 & Application < 20.0.2702 - RCE via API APP_KEY Disclosure
CVSS 9.8
CVE-2025-54855
MEDIUM
Click Programming Software <3.60 - Info Disclosure
CVSS 4.2
CVE-2025-34206
CRITICAL
Vasion Print Virtual Appliance Host and Application - Cleartext Storage of Sensitive Information in /var/www/efs_storage
CVSS 9.8
CVE-2025-34200
HIGH
Vasion Print Virtual Appliance Host and Application - Cleartext Storage of Sensitive Information in /etc/issue
CVSS 7.8
CVE-2025-49728
MEDIUM
Microsoft PC Manager < 3.18.0.0 - Cleartext Storage of Sensitive Information
CVSS 4.0
CVE-2025-58401
MEDIUM
Obsidian GitHub Copilot Plugin <1.1.7 - Info Disclosure
CVSS 6.8
CVE-2025-57806
MEDIUM
Local Deep Research <0.6.7 - Info Disclosure
CVE-2025-55443
CRITICAL
Telpo MDM 1.4.6-1.4.9 - Cleartext Storage of Sensitive Credentials in Log Files
CVSS 9.1
CVE-2025-7426
CRITICAL
MINOVA TTA - Unauthenticated Exposure of FTP Credentials via Debug Port
CVE-2025-2182
MEDIUM
Palo Alto Networks PAN-OS - Info Disclosure
CVE-2025-2181
MEDIUM
Palo Alto Networks Checkov - Info Disclosure
CVE-2025-55280
MEDIUM
ZKTeco WL20 Biometric Attendance System <= ZLM31-FXO1-3.1.8 - Cleartext Storage of Sensitive Information in Firmware
CVE-2025-54464
HIGH
ZKTeco WL20 Biometric Attendance System <= ZLM31-FXO1-3.1.8 - Cleartext Storage of Sensitive Information in Firmware
CVE-2025-40753
MEDIUM
POWER METER SICAM - Info Disclosure
CVSS 6.2
CVE-2025-40752
MEDIUM
POWER METER SICAM - Info Disclosure
CVSS 6.2
CVE-2025-51055
HIGH
Vedo Suite <2024.17 - Info Disclosure
CVSS 8.6
CVE-2025-8528
LOW
Exrick xboot <3.3.4 - Info Disclosure
CVSS 3.7
CVE-2025-7738
MEDIUM
Ansible django-ansible-base < 2025.7.22 - Cleartext Storage of Sensitive Information in Gateway API
CVSS 4.4
Details
Vulnerabilities
804