CVE-2023-33001
16.05.2023, 17:15
Jenkins HashiCorp Vault Plugin 360.v0a_1c04cf807d and earlier does not properly mask (i.e., replace with asterisks) credentials in the build log when push mode for durable task logging is enabled.Enginsight
Vendor | Product | Version |
---|---|---|
jenkins | hashicorp_vault | 𝑥 ≤ 360.v0a_1c04cf807d |
𝑥
= Vulnerable software versions
Common Weakness Enumeration