Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:26511
HistoryAug 28, 2020 - 2:13 a.m.

Information Disclosure

2020-08-2802:13:11
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
12
jenkins-jira-plugin
vulnerability
information disclosure
per-folder jira site
credentials
system scope

EPSS

0.001

Percentile

42.8%

jenkins-jira-plugin is vulnerable to information disclosure. The scope for per-folder Jira site definitions is not properly declared, allowing users to select and use credentials with System scope.

EPSS

0.001

Percentile

42.8%