CWE-312

Cleartext Storage of Sensitive Information

Parent: CWE-311 - Missing Encryption of Sensitive Data

The product stores sensitive information in cleartext within a resource that might be accessible to another control sphere.

817 vulnerabilities with CWE-312
CVE-2025-0123 MEDIUM
Palo Alto Networks PAN-OS - Info Disclosure
CVE-2025-3442 MEDIUM
TP-Link Tapo H200 V1 - Info Disclosure
CVE-2025-0418 MEDIUM
Valmet DNA >=C2007 <C2021 - Cleartext Storage of Sensitive Information
CVE-2025-2922 LOW
Netis WF-2404 1.1.124EN - Info Disclosure
CVSS 2.0
CVE-2025-2909 MEDIUM
Fermax DuoxMe iOS application < 3.3.1 - Cleartext Storage of Sensitive Information
CVE-2025-25758 HIGH
KukuFM 1.12.7 - Cleartext Storage of Sensitive Information via Android Backup
CVSS 7.5
CVE-2025-2189 MEDIUM
Tinxy Smart Devices - Info Disclosure
CVE-2025-2120 LOW
Thinkware Car Dashcam F800 Pro <20250226 - Info Disclosure
CVSS 2.1
CVE-2025-27623 MEDIUM
Jenkins < 2.492.2 and < 2.500 - Cleartext Storage of Sensitive Information in View Config
CVSS 4.3
CVE-2025-27622 MEDIUM
Jenkins < 2.492.2, 2.493-2.499 - Cleartext Storage of Sensitive Information in Agent config.xml
CVSS 4.3
CVE-2025-27685 HIGH
Vasion Print < 20.0.1330 and Virtual Appliance < 1.0.735 - Cleartext Storage of Sensitive Information
CVSS 7.5
CVE-2025-22896 HIGH
mySCADA myPRO Manager Credential Harvester (CVE-2025-24865 and CVE-2025-22896)
CVSS 8.6
CVE-2025-26495 HIGH
Tableau Server < 2020.4.19 - Cleartext Storage of Sensitive Information in Logging Repositories
CVSS 7.5
CVE-2025-23215 CRITICAL
PMD and PMD Designer - Exposure of Sensitive Information via Release Signing Key Passphrase
CVE-2025-0142 MEDIUM
Zoom Jenkins Marketplace <1.4 - Info Disclosure
CVSS 4.3
CVE-2025-23027 MEDIUM
next-forge < 3.0.11 - Cleartext Storage of Sensitive Information in .env.example
CVE-2024-58023 HIGH
Bosch Configuration Manager - Cleartext Storage of Sensitive Information
CVSS 8.4
CVE-2024-55027 HIGH
Weintek cMT-3072XH2 v2.1.53 - Info Disclosure
CVSS 7.5
CVE-2024-9432 MEDIUM
OpenText Vertica <25.X - Info Disclosure
CVE-2024-58277 HIGH
R Radio Network FM Transmitter 1.07 - Info Disclosure
CVE-2024-52284 HIGH
Rancher Fleet BundleDeployment - Information Disclosure via Helm Values
CVSS 7.7
CVE-2024-24915 MEDIUM
Check Point SmartConsole - Cleartext Storage of Sensitive Information in Memory
CVSS 6.1
CVE-2024-47056 MEDIUM
Mautic 4.4.0-4.4.15 - Unauthenticated Sensitive Information Disclosure via .env File Exposure
CVSS 5.1
CVE-2024-56428 MEDIUM
itech iLabClient <3.7.1 - Info Disclosure
CVSS 5.5
CVE-2024-23942 HIGH
Client Workstation - Info Disclosure
CVSS 7.1
Details
Vulnerabilities 817