CVE-2020-2198
03.06.2020, 13:15
Jenkins Project Inheritance Plugin 19.08.02 and earlier does not redact encrypted secrets in the 'getConfigAsXML' API URL when transmitting job config.xml data to users without Job/Configure.Enginsight
Vendor | Product | Version |
---|---|---|
jenkins | project_inheritance | 𝑥 ≤ 19.08.02 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration