Количество 2
Количество 2
CVE-2022-23117
около 4 лет назад
Jenkins Conjur Secrets Plugin 1.0.9 and earlier implements functionality that allows attackers able to control agent processes to retrieve all username/password credentials stored on the Jenkins controller.
CVSS3: 7.5
EPSS: Низкий
GHSA-cw68-xmm4-c83r
около 4 лет назад
Agent-to-controller security bypass in Jenkins Conjur Secrets Plugin allows retrieving all credentials
CVSS3: 5.3
EPSS: Низкий
Уязвимостей на страницу
20
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2022-23117 Jenkins Conjur Secrets Plugin 1.0.9 and earlier implements functionality that allows attackers able to control agent processes to retrieve all username/password credentials stored on the Jenkins controller. | CVSS3: 7.5 | 0% Низкий | около 4 лет назад | |
GHSA-cw68-xmm4-c83r Agent-to-controller security bypass in Jenkins Conjur Secrets Plugin allows retrieving all credentials | CVSS3: 5.3 | 0% Низкий | около 4 лет назад |
Уязвимостей на страницу
20