Количество 2
Количество 2
CVE-2018-1000610
A exposure of sensitive information vulnerability exists in Jenkins Configuration as Code Plugin 0.7-alpha and earlier in DataBoundConfigurator.java, Attribute.java, BaseConfigurator.java, ExtensionConfigurator.java that allows attackers with access to Jenkins log files to obtain the passwords configured using Configuration as Code Plugin.
GHSA-8486-h39x-cx2f
Jenkins Configuration as Code Plugin has Insufficiently Protected Credentials
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2018-1000610 A exposure of sensitive information vulnerability exists in Jenkins Configuration as Code Plugin 0.7-alpha and earlier in DataBoundConfigurator.java, Attribute.java, BaseConfigurator.java, ExtensionConfigurator.java that allows attackers with access to Jenkins log files to obtain the passwords configured using Configuration as Code Plugin. | CVSS3: 8.8 | 0% Низкий | больше 7 лет назад | |
GHSA-8486-h39x-cx2f Jenkins Configuration as Code Plugin has Insufficiently Protected Credentials | CVSS3: 8.8 | 0% Низкий | больше 3 лет назад |
Уязвимостей на страницу