CVE-2026-26266
- EPSS 0.04%
- Veröffentlicht 03.03.2026 22:16:15
- Zuletzt bearbeitet 05.03.2026 21:22:01
AliasVault is a privacy-first password manager with built-in email aliasing. A stored cross-site scripting (XSS) vulnerability was identified in the email rendering feature of AliasVault Web Client versions 0.25.3 and lower. When viewing received ema...
CVE-2026-2974
- EPSS 0.01%
- Veröffentlicht 23.02.2026 05:32:10
- Zuletzt bearbeitet 12.03.2026 16:19:52
A vulnerability was identified in AliasVault App up to 0.25.3 on Android/iOS. This vulnerability affects unknown code of the file shared_prefs/aliasvault.xml of the component Backup Handler. The manipulation of the argument accessToken/refreshToken/m...
CVE-2026-22694
- EPSS 0.01%
- Veröffentlicht 14.01.2026 16:32:36
- Zuletzt bearbeitet 05.03.2026 13:45:38
AliasVault is a privacy-first password manager with built-in email aliasing. AliasVault Android versions 0.24.0 through 0.25.2 contained an issue in how passkey requests from Android apps were validated. Under certain local conditions, a malicious ap...