CWE•Variant•Draft•14 recent CVEs
CWE-313Cleartext Storage in a File or on Disk
Description
The product stores sensitive information in cleartext in a file, or on disk.
The sensitive information could be read by attackers with access to the file, or with physical or administrator access to the raw disk. Even if the information is encoded in a way that is not human-readable, certain techniques could determine which encoding is being used, then decode the information.
Common consequences
- Confidentiality→Read Application Data
Related CWEs
Recent CVEs classified under this CWE
CVE-2026-908423.72026-09-15CVE-2026-146636.52026-08-13CVE-2026-88042026-07-03CVE-2026-527838.22026-06-26CVE-2026-243497.12026-06-09CVE-2025-43976.82026-05-07CVE-2026-65984.32026-04-20CVE-2026-55315.32026-04-05CVE-2025-643056.52026-01-07CVE-2025-361546.22025-12-24CVE-2025-148362.72025-12-17CVE-2025-67482.12025-06-27CVE-2023-356995.32023-07-10CVE-2018-106225.22018-08-10