Known Vulnerabilities for products from Keepass

Listed below are 7 of the newest known vulnerabilities associated with the vendor "Keepass".

These CVEs are retrieved based on exact matches on listed vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed vendor information are still displayed.

Data on known vulnerable products is also displayed based on information from known CPEs, each product links to its respective vulnerability page.

Known Vulnerabilities

CVE Shortened Description Severity Publish Date Last Modified
CVE-2023-24055 json ** DISPUTED ** KeePass through 2.53 (in a default installation) allows an attacker, who has write access to the XML configura... 5.5 - MEDIUM 2023-01-22 2023-11-07
CVE-2022-0725 json A flaw was found in keepass. The vulnerability occurs due to logging the plain text passwords in system log and leads to an I... 7.5 - HIGH 2022-03-10 2022-10-28
CVE-2019-20184 json KeePass 2.4.1 allows CSV injection in the title field of a CSV export. 7.8 - HIGH 2020-01-09 2023-11-07
CVE-2017-1000066 json The entry details view function in KeePass version 1.32 inadvertently decrypts certain database entries into memory, which ma... 7.5 - HIGH 2017-07-17 2019-10-03
CVE-2016-5119 json The automatic update feature in KeePass 2.33 and earlier allows man-in-the-middle attackers to execute arbitrary code by spoo... 7.5 - HIGH 2017-01-23 2017-01-24
CVE-2010-5200 json Untrusted search path vulnerability in KeePass Password Safe before 1.18 allows local users to gain privileges via a Trojan h... 6.9 - MEDIUM 2012-09-06 2012-09-13
CVE-2010-5196 json Untrusted search path vulnerability in KeePass Password Safe before 2.13 allows local users to gain privileges via a Trojan h... 6.9 - MEDIUM 2012-09-06 2012-09-06

Known software with vulnerabilities from Keepass

Type Vendor Product Version
ApplicationKeepassKeepass0.8
ApplicationKeepassPassword Safe1.6