CVE-2023-40345
EUVD-2023-237716.08.2023, 15:15
Jenkins Delphix Plugin 3.0.2 and earlier does not set the appropriate context for credentials lookup, allowing attackers with Overall/Read permission to access and capture credentials they are not entitled to.Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| jenkins | delphix | 𝑥 ≤ 3.0.2 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
References