CVE-2023-46651
25.10.2023, 18:17
Jenkins Warnings Plugin 10.5.0 and earlier does not set the appropriate context for credentials lookup, allowing attackers with Item/Configure permission to access and capture credentials they are not entitled to. This fix has been backported to 10.4.1.Enginsight
Vendor | Product | Version |
---|---|---|
jenkins | warnings | 𝑥 ≤ 10.5.0 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration