Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-v67x-gpg7-mwv3

Опубликовано: 14 мая 2022
Источник: github
Github: Прошло ревью
CVSS3: 6.5

Описание

Exposure of Sensitive Information in Jenkins Kubernetes Plugin

A exposure of sensitive information vulnerability exists in Jenkins Kubernetes Plugin 1.7.0 and older in ContainerExecDecorator.java that results in sensitive variables such as passwords being written to logs.

Пакеты

Наименование

org.csanchez.jenkins.plugins:kubernetes

maven
Затронутые версииВерсия исправления

< 1.7.1

1.7.1

EPSS

Процентиль: 63%
0.00459
Низкий

6.5 Medium

CVSS3

Дефекты

CWE-200

Связанные уязвимости

CVSS3: 3.1
redhat
около 7 лет назад

A exposure of sensitive information vulnerability exists in Jenkins Kubernetes Plugin 1.7.0 and older in ContainerExecDecorator.java that results in sensitive variables such as passwords being written to logs.

CVSS3: 6.5
nvd
около 7 лет назад

A exposure of sensitive information vulnerability exists in Jenkins Kubernetes Plugin 1.7.0 and older in ContainerExecDecorator.java that results in sensitive variables such as passwords being written to logs.

EPSS

Процентиль: 63%
0.00459
Низкий

6.5 Medium

CVSS3

Дефекты

CWE-200