πŸ” CVE Alert

CVE-2025-34188

UNKNOWN 0.0

Vasion Print (formerly PrinterLogic) Local Log Disclosure of Cleartext Sessions

CVSS Score
0.0
EPSS Score
0.0%
EPSS Percentile
0th

Vasion Print (formerly PrinterLogic) Virtual Appliance Host versions prior to 1.0.735 and Application prior to 20.0.1330 (macOS/Linux client deployments) contain a vulnerability in the local logging mechanism. Authentication session tokens, including PHPSESSID, XSRF-TOKEN, and laravel_session, are stored in cleartext within world-readable log files. Any local user with access to the machine can extract these session tokens and use them to authenticate remotely to the SaaS environment, bypassing normal login credentials, potentially leading to unauthorized system access and exposure of sensitive information.Β This vulnerability has been identified by the vendor as:Β V-2022-008 β€” Secrets Leaked in Logs.

CWE CWE-532
Vendor vasion
Product print virtual appliance host
Published Sep 19, 2025
Last Updated May 15, 2026
Stay Ahead of the Next One

Get instant alerts for vasion print virtual appliance host

Be the first to know when new unknown vulnerabilities affecting vasion print virtual appliance host are published β€” delivered to Slack, Telegram or Discord.

Get Free Alerts β†’ Free Β· No credit card Β· 60 sec setup

Affected Versions

Vasion / Print Virtual Appliance Host
0 < 1.0.735
Vasion / Print Application
0 < 20.0.1330

References

NVD β†— CVE.org β†— EPSS Data β†—
help.printerlogic.com: https://help.printerlogic.com/saas/Print/Security/Security-Bulletins.htm pierrekim.github.io: https://pierrekim.github.io/blog/2025-04-08-vasion-printerlogic-83-vulnerabilities.html#mac-leak-secrets help.printerlogic.com: https://help.printerlogic.com/va/Print/Security/Security-Bulletins.htm vulncheck.com: https://www.vulncheck.com/advisories/vasion-print-printerlogic-local-log-disclosure-of-cleartext-sessions

Credits

Pierre Barre