Vulnerability index

Browse CVEs

7 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Keepass HIGH 7.5
CVE-2023-32784

In KeePass 2.x before 2.54, it is possible to recover the cleartext master password from a memory dump, even when a workspace is locked or no longer …

Fix: 2.54+
Fix from $1,950 2023-05-15
Keepass MEDIUM 5.5
CVE-2023-24055

KeePass through 2.53 (in a default installation) allows an attacker, who has write access to the XML configuration file, to obtain the cleartext pass…

Fix: after 2.53
Fix from $1,600 2023-01-22
Keepass HIGH 7.8
CVE-2019-20184

KeePass 2.4.1 allows CSV injection in the title field of a CSV export.

Mitigation only
Fix from $1,950 2020-01-09
Keepass HIGH 7.5
CVE-2017-1000066

The entry details view function in KeePass version 1.32 inadvertently decrypts certain database entries into memory, which may result in the disclosu…

Mitigation only
Fix from $1,950 2017-07-17
Keepass HIGH 7.5
CVE-2016-5119

The automatic update feature in KeePass 2.33 and earlier allows man-in-the-middle attackers to execute arbitrary code by spoofing the version check r…

Fix: after 2.33
Fix from $1,950 2017-01-23
Password Safe MEDIUM 6.9
CVE-2010-5196

Untrusted search path vulnerability in KeePass Password Safe before 2.13 allows local users to gain privileges via a Trojan horse DwmApi.dll file in …

Fix: after 2.10
Fix from $1,600 2012-09-06
Keepass MEDIUM 6.9
CVE-2010-5200

Untrusted search path vulnerability in KeePass Password Safe before 1.18 allows local users to gain privileges via a Trojan horse DLL in the current …

Fix: after 1.17
Fix from $1,600 2012-09-06