CVE-2026-33003
EUVD-2026-1284718.03.2026, 16:16
Jenkins LoadNinja Plugin 2.1 and earlier stores LoadNinja API keys unencrypted in job config.xml files on the Jenkins controller where they can be viewed by users with Item/Extended Read permission or access to the Jenkins controller file system.Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| jenkins | loadninja | 𝑥 < 2.2 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration