CVE-2025-26495
11.02.2025, 18:15
Cleartext Storage of Sensitive Information vulnerability in Salesforce Tableau Server can record the Personal Access Token (PAT) into logging repositories.This issue affects Tableau Server: before 2022.1.3, before 2021.4.8, before 2021.3.13, before 2021.2.14, before 2021.1.16, before 2020.4.19.Enginsight
| Vendor | Product | Version |
|---|---|---|
| tableau | tableau_server | 2020.4 ≤ 𝑥 < 2020.4.19 |
| tableau | tableau_server | 2021.1 ≤ 𝑥 < 2021.1.16 |
| tableau | tableau_server | 2021.2 ≤ 𝑥 < 2021.2.14 |
| tableau | tableau_server | 2021.3 ≤ 𝑥 < 2021.3.13 |
| tableau | tableau_server | 2021.4 ≤ 𝑥 < 2021.4.8 |
| tableau | tableau_server | 2022.1 ≤ 𝑥 < 2022.1.3 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration