{"id":"CVE-2025-48708","details":"gs_lib_ctx_stash_sanitized_arg in base/gslibctx.c in Artifex Ghostscript before 10.05.1 lacks argument sanitization for the # case. A created PDF document includes its password in cleartext.","modified":"2026-04-29T18:29:33.964393468Z","published":"2025-05-23T04:15:32.793Z","related":["SUSE-SU-2025:03460-1","SUSE-SU-2025:03461-1","SUSE-SU-2026:21363-1","openSUSE-SU-2025:15413-1","openSUSE-SU-2026:20592-1"],"references":[{"type":"REPORT","url":"https://bugs.ghostscript.com/show_bug.cgi?id=708446"},{"type":"FIX","url":"https://cgit.ghostscript.com/cgi-bin/cgit.cgi/ghostpdl.git/commit/?id=b587663c623b4462f9e78686a31fd880207303ee"},{"type":"ARTICLE","url":"http://www.openwall.com/lists/oss-security/2025/05/23/2"}],"affected":[{"database_specific":{"unresolved_ranges":[{"events":[{"introduced":"0"},{"fixed":"10.05.1"}]},{"events":[{"introduced":"0"},{"fixed":"10.05.1"}]}],"source":"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2025-48708.json"}}],"schema_version":"1.9.0","severity":[{"type":"CVSS_V3","score":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N"}]}