CVE-2025-14376

A security issue was discovered within the legacy ADI server component of Verve Asset Manager, caused by plaintext secrets stored in environment variables on the ADI server. This component has been retired and has been optional since the 1.36 release in 2024.
CVSS

No CVSS.

Configurations

No configuration.

History

15 Apr 2026, 00:35

Type Values Removed Values Added
Summary
  • (es) Se descubrió un problema de seguridad dentro del componente de servidor ADI heredado de Verve Asset Manager, causado por secretos en texto plano almacenados en variables de entorno en el servidor ADI. Este componente ha sido retirado y ha sido opcional desde la versión 1.36 en 2024.

20 Jan 2026, 14:16

Type Values Removed Values Added
New CVE

Information

Published : 2026-01-20 14:16

Updated : 2026-04-15 00:35


NVD link : CVE-2025-14376

Mitre link : CVE-2025-14376

CVE.ORG link : CVE-2025-14376


JSON object : View

Products Affected

No product.

CWE
CWE-922

Insecure Storage of Sensitive Information