CVE-2019-10363
Description
Jenkins Configuration as Code Plugin 1.24 and earlier did not reliably identify sensitive values expected to be exported in their encrypted form.
Risk Information
Base Score
4.9
MODERATE
Vector
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:N/A:N
EPSS Score
Exploitation Probability
0.051
Associated Vulnerability
| Vulnerability | OS Platform |
|---|---|
| Vulnerabilities CVE-2019-10362,CVE-2019-10363,CVE-2019-10344,CVE-2019-10345,CVE-2019-10343 are fixed in Jenkins - configuration-as-code 1.25 | Windows |
| Vulnerabilities CVE-2019-10362,CVE-2019-10363,CVE-2019-10344,CVE-2019-10345,CVE-2019-10343 are fixed in Jenkins - configuration-as-code for Linux 1.25 | Linux |
Patch Details
No records foundReferences
https://nvd.nist.gov/vuln/detail/CVE-2023-1234
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-1234