Перейти к содержимому
Noroxi

Записи 1password

12 опубликованных записей вендора 1password.

Профиль для исследователя

Попали в KEV
0 · 0 %
С эксплойтом
0 · 0 %
Pre-auth RCE
0
С записью об исправлении
0 %
Медиана: публикация → KEV
Ни одна запись не попала в KEV

Записи по годам

  1. 18
  2. 20
  3. 21
  4. 22
  5. 24

Столбик: всего · тёмная часть: CISA KEV.

Охват bug bounty

Вендор продукта присутствует в публичной программе. Сопоставление по имени; проверьте текст scope в программе.

Все записи

12 записей
  • CVE-2020-10256
    39Наблюдать

    An issue was discovered in beta versions of the 1Password command-line tool prior to 0.5.5 and in beta versions of the 1Password SCIM bridge

    КритическаяCVSS 9,8Эксплойта нетEPSS 1 %

    1password · command line interface27 окт. 2020 г.

  • CVE-2020-18173
    31Наблюдать

    A DLL injection vulnerability in 1password.dll of 1Password 7.3.712 allows attackers to execute arbitrary code.

    ВысокаяCVSS 7,8Эксплойта нетEPSS 0 %

    1password · 1password26 июл. 2021 г.

  • CVE-2024-42219
    31Наблюдать

    1Password 8 before 8.10.36 for macOS allows local attackers to exfiltrate vault items because XPC inter-process communication validation is

    ВысокаяCVSS 7,8Эксплойта нетEPSS 0 %

    1password · 1password6 авг. 2024 г.

  • CVE-2021-26905
    26Наблюдать

    1Password SCIM Bridge before 1.6.2 mishandles validation of authenticated requests for log files, leading to disclosure of a TLS private key

    СредняяCVSS 6,5Эксплойта нетEPSS 1 %

    1password · scim bridge8 февр. 2021 г.

  • CVE-2021-41795
    26Наблюдать

    The Safari app extension bundled with 1Password for Mac 7.7.0 through 7.8.x before 7.8.7 is vulnerable to authorization bypass.

    СредняяCVSS 6,5Эксплойта нетEPSS 1 %

    1password · 1password29 сент. 2021 г.

  • CVE-2018-13042
    25Наблюдать

    The 1Password application 6.8 for Android is affected by a Denial Of Service vulnerability.

    СредняяCVSS 5,9Proof of conceptEPSS 8 %

    1password · 1password5 окт. 2018 г.

  • CVE-2014-3753
    22Наблюдать

    AgileBits 1Password through 1.0.9.340 allows security feature bypass

    СредняяCVSS 5,5Эксплойта нетEPSS 1 %

    1password · 1password9 янв. 2020 г.

  • CVE-2022-29868
    22Наблюдать

    1Password for Mac 7.2.4 through 7.9.x before 7.9.3 is vulnerable to a process validation bypass.

    СредняяCVSS 5,5Эксплойта нетEPSS 0 %

    1password · 1password9 мая 2022 г.

  • CVE-2021-36758
    21Наблюдать

    1Password Connect server before 1.2 is missing validation checks, permitting users to create Secrets Automation access tokens that can be us

    СредняяCVSS 5,4Эксплойта нетEPSS 0 %

    1password · connect15 июл. 2021 г.

  • CVE-2022-32550
    19Наблюдать

    An issue was discovered in AgileBits 1Password, involving the method various 1Password apps and integrations used to create connections to t

    СредняяCVSS 4,8Эксплойта нетEPSS 1 %

    1password · 1password15 июн. 2022 г.

  • CVE-2024-42218
    18Наблюдать

    1Password 8 before 8.10.38 for macOS allows local attackers to exfiltrate vault items by bypassing macOS-specific security mechanisms.

    СредняяCVSS 4,7Эксплойта нетEPSS 0 %

    1password · 1password6 авг. 2024 г.

  • CVE-2012-6369
    17Наблюдать

    Cross-site scripting (XSS) vulnerability in the Troubleshooting Reporting System feature in AgileBits 1Password 3.9.9 might allow remote att

    СредняяCVSS 4,3Эксплойта нетEPSS 1 %

    1password · 1password28 дек. 2012 г.