[原文]Trillian Pro 3.1 build 121, when checking Yahoo e-mail, stores the password in plaintext in a world readable file and does not delete the file after login, which allows local users to obtain sensitive information.
Trillian Pro Yahoo Mail Account Cleartext Password Local Disclosure
Local Access Required
Loss of Confidentiality
Trillian contains a flaw that may lead to an unauthorized password exposure. It is possible to gain access to Yahoo Mail passwords when the Check Mail function occurs, which may lead to a loss of confidentiality.
Currently, there are no known upgrades, patches, or workarounds available to correct this issue.