High-severity vulnerability in Passwordstate credential manager. Patch now.

High-severity vulnerability in Passwordstate credential manager. Patch now.

Click Studios, the Australian company behind Passwordstate, an enterprise-level password management solution, is sounding the alarm for its users to urgently apply a recent update. This update addresses a serious vulnerability that could be exploited by cybercriminals to gain unauthorized administrative access to users' vaults. The identified flaw involves an authentication bypass that allows attackers to craft a specific URL leading to an emergency access page within Passwordstate. Once on this page, a malicious actor could potentially navigate to the administrative section of the password manager, posing a significant risk to the security of sensitive credentials. Though a CVE identifier for this vulnerability has not yet been issued, Click Studios emphasizes the urgency of the matter. Their software is utilized by approximately 29,000 customers and 370,000 security professionals, making the implications of this flaw particularly concerning. Passwordstate is engineered to protect organizations' most critical credentials and features integration with Active Directory, which is essential for Windows network administrators to manage user accounts effectively. In a notification sent to its users on Thursday, Click Studios announced the release of an update that addresses two vulnerabilities, including this significant authentication bypass issue. The company clearly stated that this flaw is linked to accessing the core Emergency Access page, and if exploited, could lead to unauthorized access to the Passwordstate Administration section. With the vulnerability classified as high severity, users are strongly encouraged to implement the patch without delay.

Sources : Ars Technica

Published On : Aug 28, 2025, 18:55

AI
ByteDance Enhances Copyright Protections Amid Controversy Over AI-Generated Videos

In response to growing concerns over copyright infringement, ByteDance has announced plans to fortify the safeguards ass...

Business Insider | Feb 16, 2026, 13:30
ByteDance Enhances Copyright Protections Amid Controversy Over AI-Generated Videos
Startups
Florida Best Buy Employee Allegedly Defrauds Store with Extreme Discounts

A Florida employee of Best Buy has been charged with fraud after reportedly exploiting a manager's code to secure massiv...

Ars Technica | Feb 16, 2026, 20:15
Florida Best Buy Employee Allegedly Defrauds Store with Extreme Discounts
AI
Revolutionizing Business: AI Set to Transform Service Billing Models

At the India AI Impact Summit 2026, Puneet Chandok, President of Microsoft India and South Asia, highlighted a significa...

Business Today | Feb 16, 2026, 17:25
Revolutionizing Business: AI Set to Transform Service Billing Models
AI
ByteDance Takes Action Amid Hollywood's Outcry Over AI Tool's Copyright Violations

In response to significant backlash from Hollywood, ByteDance is urgently implementing measures to prevent its AI video ...

Ars Technica | Feb 16, 2026, 17:50
ByteDance Takes Action Amid Hollywood's Outcry Over AI Tool's Copyright Violations
AI
The Hype Surrounding OpenClaw: Are AI Agents Really Worth the Buzz?

In a whirlwind of excitement, it appeared for a moment that AI technology was on the cusp of a revolution. The launch of...

TechCrunch | Feb 16, 2026, 13:55
The Hype Surrounding OpenClaw: Are AI Agents Really Worth the Buzz?
View All News