Описание
Jenkins SourceGear Vault plugin transmits credentials in plain text
Jenkins SourceGear Vault Plugin transmits configured credentials in plain text as part of job configuration forms, potentially resulting in their exposure. As of the publication of the advisory, there are no patches and the plugin is unmaintained.
Пакеты
Наименование
org.jenkins-ci.plugins:vault-scm-plugin
maven
Затронутые версииВерсия исправления
<= 1.1.1
Отсутствует
Связанные уязвимости
CVSS3: 7.5
nvd
больше 6 лет назад
Jenkins SourceGear Vault Plugin transmits configured credentials in plain text as part of job configuration forms, potentially resulting in their exposure.