Candidate: CVE-2022-0725 PublicDate: 2022-03-10 17:44:00 UTC References: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2022-0725 https://bugzilla.redhat.com/show_bug.cgi?id=2052696 https://sourceforge.net/p/keepass/discussion/329220/thread/da7546b7e1/ https://sourceforge.net/p/keepass/discussion/329220/thread/33d6afdc/ Description: A flaw was found in KeePass. The vulnerability occurs due to logging the plain text passwords in the system log and leads to an Information Exposure vulnerability. This flaw allows an attacker to interact and read sensitive passwords and logs. Ubuntu-Description: Notes: Mitigation: Bugs: Priority: medium Discovered-by: Assigned-to: CVSS: nvd: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N [7.5 HIGH] Patches_keepass2: upstream_keepass2: needs-triage trusty_keepass2: ignored (out of standard support) xenial_keepass2: ignored (out of standard support) bionic_keepass2: needs-triage focal_keepass2: needs-triage impish_keepass2: needs-triage jammy_keepass2: needs-triage devel_keepass2: needs-triage