CYBERSECURITYTRACKER
TRACKING7,631 stories in this site build1,635 vulnerability news stories in this site build
Permanent story citation

Signed up for Klaviyo? Dozens of advertisers may have seen your password

This page keeps the story as Cybersecurity Tracker first published it. If the tracker later corrects it, the correction appears below the original and never replaces it.

Back to newsStory 4152

As cited

Copy frozen at (site build).

breaches incidents

Signed up for Klaviyo? Dozens of advertisers may have seen your password

Klaviyo, a marketing automation platform, exposed user sign-up information including passwords to third-party advertisers due to a website bug. The company inadvertently shared personal data through its interface to external companies during the registration process.

Why it matters: Klaviyo users risk credential compromise and account takeover if attackers obtained passwords shared with third parties; practitioners should prompt affected users to reset credentials immediately.

Source published
First seen by Cybersecurity Tracker

Source attribution

Glossary