Pagerduty

    Dashboard / Vendors

    Products: 4
    Vulnerabilities: 12
    Known Exploited: 0
    1
    Critical Level Threats
    5
    High Level Threats
    6
    Medium Level Threats
    0
    Low Level Threats

    Vulnerabilities

    100806040200
    JanFebMarAprMayJunJulAugSepOctNovDec
    Critical Level Threats
    High Level Threats
    Medium Level Threats
    Low Level Threats

    Products Security index

    Actions
    Items Per Page

    Vulnerabilities

    CVE-2025-52493

    PagerDuty Runbook through 2025-06-12 exposes stored secrets directly in the webpage DOM at the configuration page. Although these secrets appear masked as password fields, the actual secret values are present in the page source and can be revealed by simply modifying the input field type from "password" to "text" using browser developer tools. This vulnerability is exploitable by administrative users who have access to the configuration page.

    Last Modified: Jan 02, 2026
    Published: Dec 10, 2025

    CVE-2023-47112

    Authenticated users can view job names and groups they do not have authorization to view in Rundeck

    Last Modified: Nov 21, 2024
    Published: Nov 16, 2023

    CVE-2023-48222

    Authenticated users can view or delete jobs they do not have authorization for in Rundeck

    Last Modified: Nov 21, 2024
    Published: Nov 16, 2023

    CVE-2022-31044

    Plaintext Storage of Keys and Passwords in Rundeck and PagerDuty Process Automation

    Last Modified: Apr 23, 2025
    Published: Jun 15, 2022

    CVE-2022-29186

    Use of Hard-coded Cryptographic Key in rundeck/rundeck, rundeckpro/enterprise

    Last Modified: Apr 23, 2025
    Published: May 20, 2022
    Items Per Page
    Pagerduty Vulnerabilities & Security CVEs | CVE-DB