2.1
CVSSv2

CVE-2022-29868

Published: 09/05/2022 Updated: 18/05/2022
CVSS v2 Base Score: 2.1 | Impact Score: 2.9 | Exploitability Score: 3.9
CVSS v3 Base Score: 5.5 | Impact Score: 3.6 | Exploitability Score: 1.8
VMScore: 187
Vector: AV:L/AC:L/Au:N/C:P/I:N/A:N

Vulnerability Summary

1Password for Mac 7.2.4 up to and including 7.9.x prior to 7.9.3 is vulnerable to a process validation bypass. Malicious software running on the same computer can exfiltrate secrets from 1Password provided that 1Password is running and is unlocked. Affected secrets include vault items and derived values used for signing in to 1Password.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

1password 1password