Loading product vulnerabilities…
Total
3
Critical
0
High
1
Medium
1
CISA KEV
0
Python keyring has insecure permissions on new databases allowing world-readable files to be created
Python keyring lib before 0.10 created keyring files with world-readable permissions.
Python Keyring 0.9.1 does not securely initialize the cipher when encrypting passwords for CryptedFileKeyring files, which makes it easier for local users to obtain passwords via a brute-force attack.