The PassWork extension 5.0.9 for Chrome and other browsers allows an attacker to obtain cleartext cached credentials.
References
Link | Resource |
---|---|
https://chrome.google.com/webstore/detail/passwork-self-hosted/ibiipnmmlnehmeonnhbdajcfagcgihkl | Product Third Party Advisory |
https://passwork.canny.io/changelog/version-5110 | Product Vendor Advisory |
https://chrome.google.com/webstore/detail/passwork-self-hosted/ibiipnmmlnehmeonnhbdajcfagcgihkl | Product Third Party Advisory |
https://passwork.canny.io/changelog/version-5110 | Product Vendor Advisory |
Configurations
History
21 Nov 2024, 07:25
Type | Values Removed | Values Added |
---|---|---|
References | () https://chrome.google.com/webstore/detail/passwork-self-hosted/ibiipnmmlnehmeonnhbdajcfagcgihkl - Product, Third Party Advisory | |
References | () https://passwork.canny.io/changelog/version-5110 - Product, Vendor Advisory |
Information
Published : 2022-11-07 13:15
Updated : 2024-11-21 07:25
NVD link : CVE-2022-42955
Mitre link : CVE-2022-42955
CVE.ORG link : CVE-2022-42955
JSON object : View
Products Affected
passwork
- passwork
CWE
CWE-312
Cleartext Storage of Sensitive Information