Lucene search

K
osvGoogleOSV:CVE-2019-1003018
HistoryFeb 06, 2019 - 4:29 p.m.

CVE-2019-1003018

2019-02-0616:29:00
Google
osv.dev
3

6.3 Medium

AI Score

Confidence

High

0.001 Low

EPSS

Percentile

31.5%

An exposure of sensitive information vulnerability exists in Jenkins GitHub Authentication Plugin 0.29 and earlier in GithubSecurityRealm/config.jelly that allows attackers able to view a Jenkins administrator’s web browser output, or control the browser (e.g. malicious extension) to retrieve the configured client secret.

6.3 Medium

AI Score

Confidence

High

0.001 Low

EPSS

Percentile

31.5%

Related for OSV:CVE-2019-1003018