Loading HuntDB...

GHSA-54h8-8vv6-353m

GitHub Security Advisory

⚠ Unreviewed HIGH Has CVE

Advisory Details

kedpm 0.5 and 1.0 creates a history file in ~/.kedpm/history that is written in cleartext. All of the commands performed in the password manager are written there. This can lead to the disclosure of the master password if the "password" command is used with an argument. The names of the password entries created and consulted are also accessible in cleartext.

Related CVEs

Key Information

GHSA ID
GHSA-54h8-8vv6-353m
Published
May 13, 2022 1:47 AM
Last Modified
April 20, 2025 3:36 AM
CVSS Score
7.5 /10
Primary Ecosystem
Unknown
Primary Package
Unknown
GitHub Reviewed
✗ No

Dataset

Last updated: August 31, 2025 6:33 AM

Data from GitHub Advisory Database. This information is provided for research and educational purposes.