jenkins configuration-as-code CVE-2019-10345 is a vulnerability in Jenkins Configuration As Code
Published on July 31, 2019

Jenkins Configuration as Code Plugin 1.20 and earlier did not treat the proxy password as a secret to be masked when logging or encrypted for export.

NVD


Products Associated with CVE-2019-10345

Want to know whenever a new CVE is published for Jenkins Configuration As Code? stack.watch will email you.

 

Affected Versions

Jenkins project Jenkins Configuration as Code Plugin Version 1.20 and earlier is affected by CVE-2019-10345

Exploit Probability

EPSS
0.01%
Percentile
1.43%

EPSS (Exploit Prediction Scoring System) scores estimate the probability that a vulnerability will be exploited in the wild within the next 30 days. The percentile shows you how this score compares to all other vulnerabilities.