A security issue was discovered within the legacy ADI server component of Verve Asset Manager, caused by plaintext secrets stored in environment variables on the ADI server. This component has been retired and has been optional since the 1.36 release in 2024.
CVSS
No CVSS.
References
Configurations
No configuration.
History
No history.
Information
Published : 2026-01-20 14:16
Updated : 2026-01-26 15:05
NVD link : CVE-2025-14376
Mitre link : CVE-2025-14376
CVE.ORG link : CVE-2025-14376
JSON object : View
Products Affected
No product.
CWE
CWE-922
Insecure Storage of Sensitive Information
