CVE-2019-10347

HIGH8.8EPSS 0.08%

Stored credentials unencrypted in Jenkins Mashup Portlets Plugin

Published: 5/24/2022Modified: 2/16/2024

Description

Jenkins Mashup Portlets Plugin stored credentials unencrypted on the Jenkins master where they can be viewed by users with access to the master file system.

Affected packages (1)

CVSS scores

SourceVersionSeverityVector
osvCVSS 3.1HIGH8.8CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

References (5)