CVE-2025-13175

Y Soft SafeQ 6 renders the Workflow Connector password field in a way that allows an administrator with UI access to reveal the value using browser developer/inspection tools. The affected customers are only those with a password-protected scan workflow connector. This issue affects Y Soft SafeQ 6 in versions before MU106.
CVSS

No CVSS.

Configurations

No configuration.

History

No history.

Information

Published : 2026-01-14 13:16

Updated : 2026-01-14 16:25


NVD link : CVE-2025-13175

Mitre link : CVE-2025-13175

CVE.ORG link : CVE-2025-13175


JSON object : View

Products Affected

No product.

CWE
CWE-549

Missing Password Field Masking