EPSS
Percentile
28.4%
Jenkins Convertigo Mobile Platform Plugin 1.1 and earlier uses static fields to store job configuration information, allowing attackers with Item/Configure permission to capture passwords of the jobs that will be configured.
github.com/jenkinsci/convertigo-mobile-platform-plugin
nvd.nist.gov/vuln/detail/CVE-2022-25210
www.jenkins.io/security/advisory/2022-02-15/#SECURITY-2280