CWE-312
Cleartext Storage of Sensitive Information
The product stores sensitive information in cleartext within a resource that might be accessible to another control sphere.
804 vulnerabilities with CWE-312
CVE-2025-26495
HIGH
Tableau Server < 2020.4.19 - Cleartext Storage of Sensitive Information in Logging Repositories
CVSS 7.5
CVE-2025-23215
CRITICAL
PMD and PMD Designer - Exposure of Sensitive Information via Release Signing Key Passphrase
CVE-2025-0142
MEDIUM
Zoom Jenkins Marketplace <1.4 - Info Disclosure
CVSS 4.3
CVE-2025-23027
MEDIUM
next-forge < 3.0.11 - Cleartext Storage of Sensitive Information in .env.example
CVE-2024-55027
HIGH
Weintek cMT-3072XH2 v2.1.53 - Info Disclosure
CVSS 7.5
CVE-2024-9432
MEDIUM
OpenText Vertica <25.X - Info Disclosure
CVE-2024-58277
HIGH
R Radio Network FM Transmitter 1.07 - Info Disclosure
CVE-2024-52284
HIGH
Rancher Fleet BundleDeployment - Information Disclosure via Helm Values
CVSS 7.7
CVE-2024-24915
MEDIUM
Check Point SmartConsole - Cleartext Storage of Sensitive Information in Memory
CVSS 6.1
CVE-2024-47056
MEDIUM
Mautic 4.4.0-4.4.15 - Unauthenticated Sensitive Information Disclosure via .env File Exposure
CVSS 5.1
CVE-2024-56428
MEDIUM
itech iLabClient <3.7.1 - Info Disclosure
CVSS 5.5
CVE-2024-23942
HIGH
Client Workstation - Info Disclosure
CVSS 7.1
CVE-2024-12604
MEDIUM
Tap&Sign App <V.1.025 - Info Disclosure
CVSS 6.5
CVE-2024-10404
MEDIUM
Brocade SANnav < 2.3.1b - Authenticated Cleartext Storage of Sensitive Information in CalInvocationHandler
CVSS 5.5
CVE-2024-13843
MEDIUM
Ivanti Connect Secure < 22.7R2.6 & Policy Secure < 22.7R1.3 - Sensitive Data Exposure via Cleartext Storage
CVSS 6.0
CVE-2024-53651
MEDIUM
SIPROTEC 5 - Cleartext Storage of Sensitive Information in On-Board Flash Storage
CVSS 4.6
CVE-2024-45718
MEDIUM
Configuration File - Info Disclosure
CVSS 4.6
CVE-2024-49800
MEDIUM
IBM ApplinX 11.1 - Authenticated Cleartext Storage of Sensitive Information in Memory
CVSS 4.3
CVE-2024-55928
MEDIUM
Xerox Workplace Suite - Info Disclosure
CVSS 6.5
CVE-2024-12079
LOW
ECOVACS Robot Lawnmowers - Cleartext Storage of Anti-Theft PIN
CVSS 3.3
CVE-2024-46505
CRITICAL
Infoblox BloxOne v2.4 - Info Disclosure
CVSS 9.1
CVE-2024-56362
HIGH
navidrome < 0.54.1 - Cleartext Storage of JWT Secret in Database
CVSS 7.1
CVE-2024-55196
HIGH
gophish v0.12.1 - Cleartext Storage of Sensitive Information in Mail Server Configuration
CVSS 7.5
CVE-2024-50570
MEDIUM
FortiClient 7.0.0-7.0.13, 7.2.0-7.2.6, 7.4.0-7.4.1 - Cleartext Storage of VPN Password
CVSS 5.0
CVE-2024-51175
HIGH
H3C switch h3c-S1526 - Info Disclosure
CVSS 7.5
Details
Vulnerabilities
804