6.9 Medium
AI Score
Confidence
High
0.002 Low
EPSS
Percentile
55.1%
Jenkins Email Extension Plugin 2.72 and 2.73 transmits and displays the SMTP password in plain text as part of the global Jenkins configuration form, potentially resulting in its exposure.
www.openwall.com/lists/oss-security/2020/08/12/4
jenkins.io/security/advisory/2020-08-12/#SECURITY-1975