Insufficiently Protected Credentials Vulnerability in RunZero Platform
CVE-2026-5380
5.3MEDIUM
What is CVE-2026-5380?
An authorized user could potentially access clear-text secrets for certain credential types and fields in the RunZero Platform, leading to unauthorized information exposure. This vulnerability stems from insufficient protections around credential storage, marking it as a critical issue for maintaining data confidentiality. The problem has been addressed in version 4.0.260204.2 of the RunZero Platform.
Affected Version(s)
Platform 0 < 4.0.260204.2
