Apache Fineract Insufficiently Protected Credentials Vulnerability

Vulnerability

A vulnerability allowing insufficiently protected credentials has been identified in Apache Fineract versions prior to 1.11.0. This issue is fixed in version 1.12.1, and users are encouraged to upgrade to version 1.13.0, the latest release.

Impact

Exploitation of this vulnerability could lead to unauthorized access to sensitive credentials.

Remediation

Users can upgrade to Apache Fineract version 1.13.0 to address this vulnerability.

Added: Dec 12, 2025, 10:19 AM
Updated: Dec 12, 2025, 3:32 PM

Vulnerability Rating

Custom Algorithm
spread
1.9
impact
2.5
exploitability
7.4
remediation
7.7
relevance
1.3
threat
0.0
urgency
2.9
incentive
5.8

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.