Cleartext Storage of Sensitive Information vulnerability in Salesforce Tableau Server can record the Personal Access Token (PAT) into logging repositories.This issue affects Tableau Server: before 2022.1.3, before 2021.4.8, before 2021.3.13, before 2021.2.14, before 2021.1.16, before 2020.4.19.
References
| Link | Resource |
|---|---|
| https://help.salesforce.com/s/articleView?id=000390611&type=1 | Broken Link |
Configurations
Configuration 1 (hide)
|
History
29 Oct 2025, 15:08
| Type | Values Removed | Values Added |
|---|---|---|
| First Time |
Tableau
Tableau tableau Server |
|
| CPE | cpe:2.3:a:tableau:tableau_server:*:*:*:*:*:*:*:* | |
| References | () https://help.salesforce.com/s/articleView?id=000390611&type=1 - Broken Link |
04 Mar 2025, 21:15
| Type | Values Removed | Values Added |
|---|---|---|
| CVSS |
v2 : v3 : |
v2 : unknown
v3 : 7.5 |
| Summary |
|
11 Feb 2025, 18:15
| Type | Values Removed | Values Added |
|---|---|---|
| New CVE |
Information
Published : 2025-02-11 18:15
Updated : 2025-10-29 15:08
NVD link : CVE-2025-26495
Mitre link : CVE-2025-26495
CVE.ORG link : CVE-2025-26495
JSON object : View
Products Affected
tableau
- tableau_server
CWE
CWE-312
Cleartext Storage of Sensitive Information
