CVE-2024-47805
02.10.2024, 16:15
Jenkins Credentials Plugin 1380.va_435002fa_924 and earlier, except 1371.1373.v4eb_fa_b_7161e9, does not redact encrypted values of credentials using the `SecretBytes` type when accessing item `config.xml` via REST API or CLI.Enginsight
Vendor | Product | Version |
---|---|---|
jenkins | credentials | 𝑥 < 1371.1373.v4eb_fa_b_7161e9 |
jenkins | credentials | 1371.vfee6b_095f0a_3 ≤ 𝑥 < 1380.va_435002fa_924 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration