The way that FireGPG handles the user’s passphrase and decrypted clear-text is not secure and may result in the compromise of secure communication or a user’s private key. All versions up to 0.6 are vulnerable.
You can download this advisory from the following link: https://packetstormsecurity.com/files/download/71061/firegpg-cleartext.txt
Source: https://packetstormsecurity.com/files/71061/firegpg-cleartext.txt.html

