In KeePassX before 0.4.4, a cleartext copy of password data is created upon a cancel of an XML export action. This allows context-dependent attackers to obtain sensitive information by reading the .xml dotfile.
{ "binaries": [ { "binary_version": "0.4.3+dfsg-0.1ubuntu1.14.04.1", "binary_name": "keepassx" } ], "availability": "No subscription required" }