Authorization bypass through user-controlled key in keepassxc - #VU151870

 

Authorization bypass through user-controlled key in keepassxc - #VU151870

Published: September 23, 2026


Vulnerability identifier: #VU151870
CSH Severity: Medium
CVSS v4: 6.7 [CVSS:4.0/AV:L/AC:L/AT:N/PR:N/UI:A/VC:H/VI:N/VA:N/SC:N/SI:N/SA:N]
CVE-ID: N/A
CWE-ID: CWE-639
Exploitation vector: Remote access
Exploit availability: No public exploit available

Vulnerability details

The vulnerability allows a remote attacker to disclose sensitive information.

The vulnerability exists due to authorization bypass through a user-controlled key in the KeePassXC-Browser extension when saving login credentials containing references to other entries. A remote attacker can cause a website to save a username or password field as references to other entry data and receive the referenced data when credentials are filled.

User interaction is required to save the login credentials or fill them in; automatic filling can also trigger disclosure.


Affected software

keepassxc

Remediation

Install security update from vendor's website.

keepassxc - update to 2.8.0

External References

Related Security Bulletins