CWE-312
Cleartext Storage of Sensitive Information
The product stores sensitive information in cleartext within a resource that might be accessible to another control sphere.
817 vulnerabilities with CWE-312
CVE-2025-53672
MEDIUM
Jenkins Kryptowire Plugin <0.2 - Info Disclosure
CVSS 6.5
CVE-2025-53670
MEDIUM
Jenkins Nouvola DiveCloud Plugin <1.08 - Info Disclosure
CVSS 6.5
CVE-2025-7215
LOW
FNKvision FNK-GU2 <40.1.7 - Info Disclosure
CVSS 1.6
CVE-2025-27460
HIGH
Endress MEAC300-FNADE4 Firmware - Missing Full Volume Encryption
CVSS 7.6
CVE-2025-53103
MEDIUM
JUnit 5.12.0-5.13.1 - Cleartext Storage of Sensitive Information in Open Test Reporting XML Files
CVSS 5.8
CVE-2025-6224
MEDIUM
juju/utils 4.0.0-4.0.4 - Cleartext Storage of Sensitive Information in Certificate Generation
CVSS 6.5
CVE-2025-47824
LOW
Flock Safety License Plate Reader Firmware <= 2.2 - Cleartext Storage of Sensitive Information
CVSS 2.0
CVE-2025-6748
LOW
Bharti Airtel Thanks App 4.105.4 - Info Disclosure
CVSS 2.1
CVE-2025-47820
LOW
Flock Safety Gunshot Detection Firmware < 1.3 - Cleartext Storage of Sensitive Information
CVSS 2.0
CVE-2025-41647
MEDIUM
Lenze PLC Designer V4 < 4.0.0 - Unauthenticated Cleartext Password Exposure
CVSS 5.5
CVE-2025-48463
LOW
Product uses unencrypted HTTP - Info Disclosure
CVSS 3.1
CVE-2025-45001
HIGH
react-native-keys 0.7.11 - Cleartext Storage of Sensitive Information in Compiled Native Binary
CVSS 7.5
CVE-2025-1499
MEDIUM
IBM InfoSphere Information Server 11.7 - Cleartext Storage of Sensitive Information in Database Credential File
CVSS 6.5
CVE-2025-44614
HIGH
Tinxy WiFi Lock Controller v1 RF - Cleartext Storage of Sensitive Information
CVSS 7.5
CVE-2025-32752
MEDIUM
Dell ThinOS < 2502 - Cleartext Storage of Sensitive Information
CVSS 5.7
CVE-2025-4053
MEDIUM
Be-Tech Mifare Classic - Info Disclosure
CVE-2025-5154
LOW
PhonePe App 25.03.21.0 - Info Disclosure
CVSS 2.3
CVE-2025-4737
MEDIUM
com.transsion.aivoiceassistant - Info Disclosure
CVSS 6.2
CVE-2025-4537
LOW
yangzongzhuan RuoYi-Vue <3.8.9 - Info Disclosure
CVSS 3.1
CVE-2025-46820
HIGH
phpgt/Dom < 4.1.8 - Exposure of Sensitive Information via GitHub Token in Workflow Artifact
CVSS 7.1
CVE-2025-46634
HIGH
Tenda RX2 Pro 16.03.30.14 - Info Disclosure
CVSS 8.2
CVE-2025-46633
HIGH
Tenda RX2 Pro 16.03.30.14 - Info Disclosure
CVSS 8.2
CVE-2025-3395
HIGH
ABB Automation Builder <2.8.0 - Info Disclosure
CVSS 7.1
CVE-2025-27532
MEDIUM
Bosch Rexroth ctrlX OS 1.12.0-1.12.8/1.20.0-1.20.6 Authenticated Cleartext Storage of Sensitive Information
CVSS 6.5
CVE-2025-2770
MEDIUM
BEC Technologies Router Firmware - Authenticated Cleartext Storage of Sensitive Information in Web Interface
CVSS 6.5
Details
Vulnerabilities
817