CVE-2019-10343

Description

Jenkins Configuration as Code Plugin 1.24 and earlier did not properly apply masking to values expected to be hidden when logging the configuration being applied.

Risk Information

Base Score
3.3
MODERATE
Vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N
EPSS Score
Exploitation Probability
0.015

Associated Vulnerability

VulnerabilityOS Platform
Vulnerabilities CVE-2019-10362,CVE-2019-10363,CVE-2019-10344,CVE-2019-10345,CVE-2019-10343 are fixed in Jenkins - configuration-as-code 1.25Windows
Vulnerabilities CVE-2019-10362,CVE-2019-10363,CVE-2019-10344,CVE-2019-10345,CVE-2019-10343 are fixed in Jenkins - configuration-as-code for Linux 1.25Linux

Patch Details

No records found

References

https://nvd.nist.gov/vuln/detail/CVE-2023-1234
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-1234