CVE-2019-10363

MEDIUM4.9EPSS 0.05%

Cleartext Transmission of Sensitive Information in Jenkins Configuration as Code Plugin

Published: 5/24/2022Modified: 2/16/2024

Description

Jenkins Configuration as Code Plugin 1.24 and earlier did not reliably identify sensitive values expected to be exported in their encrypted form.

Affected packages (1)

CVSS scores

SourceVersionSeverityVector
osvCVSS 3.1MEDIUM4.9CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:N/A:N

References (4)