CVE-2025-70050

An issue pertaining to CWE-312: Cleartext Storage of Sensitive Information was discovered in lesspass lesspass v9.6.9 which allows attackers to obtain sensitive information.
Configurations

Configuration 1 (hide)

cpe:2.3:a:lesspass:lesspass:9.6.9:*:*:*:*:*:*:*

History

13 Mar 2026, 19:42

Type Values Removed Values Added
References () https://gist.github.com/zcxlighthouse/12809648370f0e08d71434ff419df28e - () https://gist.github.com/zcxlighthouse/12809648370f0e08d71434ff419df28e - Third Party Advisory
References () https://github.com/lesspass - () https://github.com/lesspass - Product
References () https://github.com/lesspass/lesspass - () https://github.com/lesspass/lesspass - Product
First Time Lesspass lesspass
Lesspass
CPE cpe:2.3:a:lesspass:lesspass:9.6.9:*:*:*:*:*:*:*

11 Mar 2026, 16:16

Type Values Removed Values Added
CWE CWE-312
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 6.5

11 Mar 2026, 13:53

Type Values Removed Values Added
Summary
  • (es) Un problema relacionado con CWE-312: Almacenamiento de Información Sensible en Texto Claro fue descubierto en lesspass lesspass v9.6.9, lo que permite a los atacantes obtener información sensible.

09 Mar 2026, 16:16

Type Values Removed Values Added
New CVE

Information

Published : 2026-03-09 16:16

Updated : 2026-03-13 19:42


NVD link : CVE-2025-70050

Mitre link : CVE-2025-70050

CVE.ORG link : CVE-2025-70050


JSON object : View

Products Affected

lesspass

  • lesspass
CWE
CWE-312

Cleartext Storage of Sensitive Information