2 days ago · As KeePass makes you responsible for your own database, this flexible security is perhaps even more comforting for those who host their own databases online and sync to …

Untrusted search path vulnerability in KeePass Password Safe before 2.13 allows local users to gain privileges via a Trojan horse DwmApi.dll file in the current working directory, as demonstrated by a directory that contains a .kdbx file. NOTE: some of these details are obtained from third party information.

Allowing these type of programs to autonotify of updates and self-update should be considered bad practice and a high security risk. Why risk a malicious MITM-ed update? The keepass site should just provide portable zips and off-site hashes and sigs for verification.

The list is endless. Also, you should use a different password for each account, because if you would use only one password everywhere and someone gets this password, you would have a problem: the thief would have access to all of your accounts. KeePass is a free open source password manager, which helps you to manage your passwords in a secure way.