Kde · Libksieve · CVE-2023-52723
**Name of the Vulnerable Software and Affected Versions**
KDE libksieve versions prior to 23.03.80
**Description**
The issue arises from a mistake in kmanagesieve/session.cpp where a `username` variable is accidentally assigned a password value, resulting in cleartext passwords being placed in server logs.
**Recommendations**
For versions prior to 23.03.80, update to version 23.03.80 or later to resolve the issue. As a temporary workaround, consider restricting access to server logs to minimize the risk of password exposure.