Логотип exploitDog
bind:CVE-2025-40680
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2025-40680

Количество 2

Количество 2

nvd логотип

CVE-2025-40680

7 месяцев назад

Lack of sensitive data encryption in CapillaryScope v2.5.0 of Capillary io, which stores both the proxy credentials and the JWT session token in plain text within different registry keys on the Windows operating system. Any authenticated local user with read access to the registry can extract these sensitive values.

EPSS: Низкий
github логотип

GHSA-3g73-h9cm-2486

7 месяцев назад

Lack of sensitive data encryption in CapillaryScope v2.5.0 of Capillary io, which stores both the proxy credentials and the JWT session token in plain text within different registry keys on the Windows operating system. Any authenticated local user with read access to the registry can extract these sensitive values.

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2025-40680

Lack of sensitive data encryption in CapillaryScope v2.5.0 of Capillary io, which stores both the proxy credentials and the JWT session token in plain text within different registry keys on the Windows operating system. Any authenticated local user with read access to the registry can extract these sensitive values.

0%
Низкий
7 месяцев назад
github логотип
GHSA-3g73-h9cm-2486

Lack of sensitive data encryption in CapillaryScope v2.5.0 of Capillary io, which stores both the proxy credentials and the JWT session token in plain text within different registry keys on the Windows operating system. Any authenticated local user with read access to the registry can extract these sensitive values.

0%
Низкий
7 месяцев назад

Уязвимостей на страницу