CVE-2019-10428

Jenkins Aqua Security Scanner Plugin 3.0.17 and earlier transmitted configured credentials in plain text as part of the global Jenkins configuration form, potentially resulting in their exposure.
References
Configurations

Configuration 1 (hide)

cpe:2.3:a:jenkins:aqua_security_scanner:*:*:*:*:*:jenkins:*:*

History

No history.

Information

Published : 2019-09-25 16:15

Updated : 2023-10-25 18:16


NVD link : CVE-2019-10428

Mitre link : CVE-2019-10428

CVE.ORG link : CVE-2019-10428


JSON object : View

Products Affected

jenkins

  • aqua_security_scanner
CWE
CWE-319

Cleartext Transmission of Sensitive Information