VYPR
Medium severity5.5NVD Advisory· Published Jan 9, 2024· Updated Jun 17, 2026

CVE-2023-50974

CVE-2023-50974

Description

In Appwrite CLI before 3.0.0, when using the login command, the credentials of the Appwrite user are stored in a ~/.appwrite/prefs.json file with 0644 as UNIX permissions. Any user of the local system can access those credentials.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected packages

Versions sourced from the GitHub Security Advisory.

PackageAffected versionsPatched versions
appwrite-clinpm
< 3.0.03.0.0
appwritePyPI
< 3.0.03.0.0

Affected products

4

Patches

Vulnerability mechanics

References

5

News mentions

0

No linked articles in our index yet.