CVE-2026-82453

rust-iot-platform through commit 5df942ab stores user passwords in cleartext without hashing in the user model. Attackers can read API responses from user retrieval and listing routes to obtain plaintext credentials for all accounts.
Configurations

No configuration.

History

No history.

Information

Published : 2026-08-29 14:16

Updated : 2026-08-31 19:17


NVD link : CVE-2026-82453

Mitre link : CVE-2026-82453

CVE.ORG link : CVE-2026-82453


JSON object : View

Products Affected

No product.

CWE
CWE-256

Plaintext Storage of a Password