Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:39562
HistoryMar 07, 2023 - 12:48 a.m.

Information Disclosure

2023-03-0700:48:36
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
4
jenkins-2-plugins
information disclosure
credentials
per-user
jenkins
software

6.7 Medium

AI Score

Confidence

Low

0.001 Low

EPSS

Percentile

28.4%

jenkins-2-plugins is vulnerable to Information Disclosure. An attacker with Job/Configure permission to access credentials with attacker-specified IDs stored in the private per-user credentials stores of any attacker-specified user in Jenkins.

6.7 Medium

AI Score

Confidence

Low

0.001 Low

EPSS

Percentile

28.4%