PCL (Plain Craft Launcher) Community Edition is a Minecraft launcher. In PCL CE versions 2.12.0-beta.5 to 2.12.0-beta.9, the login credentials used during the third-party login process are accidentally recorded in the local log file. Although the log file is not automatically uploaded or shared, if the user manually sends the log file, there is a risk of leakage. This is fixed in version 2.12.0-beta.10.
CVSS
No CVSS.
References
Configurations
No configuration.
History
25 Jul 2025, 15:29
Type | Values Removed | Values Added |
---|---|---|
Summary |
|
23 Jul 2025, 01:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2025-07-23 01:15
Updated : 2025-07-25 15:29
NVD link : CVE-2025-54120
Mitre link : CVE-2025-54120
CVE.ORG link : CVE-2025-54120
JSON object : View
Products Affected
No product.
CWE
CWE-532
Insertion of Sensitive Information into Log File