Zx2c4 maintains Password Store, a credential-management utility that integrates with Unix environments and shell workflows, with a narrowly scoped vulnerability footprint centered on the product itself. The observed weakness involves improper verification of cryptographic signatures, a critical concern for a tool whose primary function is to protect stored secrets. Current severity, exploitation activity, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Zx2c4 over time
Signals from CVEs in this vendor scope (1 CVEs).
1 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2020-28086HIGH pass through 1.7.3 has a possibility of using a password for an unintended resource. For exploitation to occur, the user must do a git pull, decrypt a password, and log into a remo | Dec 9, 2020 | 7.5 | 22 | NO | NO |
Signals from CVEs in this vendor scope (1 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Zx2c4.
Media articles that mention a CVE ID that affects a product developed by Zx2c4 — matched by CVE ID, not by vendor name.