A missing permission check in Jenkins lambdatest-automation Plugin 1.20.9 and earlier allows attackers with Overall/Read permission to enumerate credentials IDs of LAMBDATEST credentials stored in Jenkins.
CPE | Name | Operator | Version |
---|---|---|---|
lambdatest-automation | le | 1.20.9 |