Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-hmmg-x486-7jhf

Опубликовано: 16 сент. 2026
Источник: github
Github: Не прошло ревью
CVSS3: 3.1

Описание

Jenkins Pipeline: Multibranch Plugin 841.vec5b_9e1806ec and earlier does not set the appropriate context for credentials lookup in the resolveScm Pipeline step, allowing attackers with Item/Configure permission to access and capture credentials they are not entitled to.

Jenkins Pipeline: Multibranch Plugin 841.vec5b_9e1806ec and earlier does not set the appropriate context for credentials lookup in the resolveScm Pipeline step, allowing attackers with Item/Configure permission to access and capture credentials they are not entitled to.

3.1 Low

CVSS3

Дефекты

CWE-863

Связанные уязвимости

CVSS3: 3.1
nvd
2 дня назад

Jenkins Pipeline: Multibranch Plugin 841.vec5b_9e1806ec and earlier does not set the appropriate context for credentials lookup in the resolveScm Pipeline step, allowing attackers with Item/Configure permission to access and capture credentials they are not entitled to.

3.1 Low

CVSS3

Дефекты

CWE-863