Lucene search

K
cvelistJenkinsCVELIST:CVE-2023-30513
HistoryApr 12, 2023 - 5:05 p.m.

CVE-2023-30513

2023-04-1217:05:05
jenkins
www.cve.org
1
jenkins
kubernetes
plugin
credentials
build log
durable task logging

0.002 Low

EPSS

Percentile

60.8%

Jenkins Kubernetes Plugin 3909.v1f2c633e8590 and earlier does not properly mask (i.e., replace with asterisks) credentials in the build log when push mode for durable task logging is enabled.

CNA Affected

[
  {
    "defaultStatus": "affected",
    "product": "Jenkins Kubernetes Plugin",
    "vendor": "Jenkins Project",
    "versions": [
      {
        "lessThan": "*",
        "status": "unaffected",
        "version": "3910.ve59cec5e33ea_",
        "versionType": "maven"
      },
      {
        "lessThan": "3670.*",
        "status": "unaffected",
        "version": "3670.3672.v0ec52a_286336",
        "versionType": "maven"
      },
      {
        "lessThan": "3900.*",
        "status": "unaffected",
        "version": "3900.3902.v10b_836a_c8c15",
        "versionType": "maven"
      }
    ]
  }
]

0.002 Low

EPSS

Percentile

60.8%