Jenkins LambdaTest-Automation Plugin <=1.20.10 INFO leak of LAMBDATEST token
CVE-2023-46653 Published on October 25, 2023
Jenkins lambdatest-automation Plugin 1.20.10 and earlier logs LAMBDATEST Credentials access token at the INFO level, potentially resulting in its exposure.
Products Associated with CVE-2023-46653
Want to know whenever a new CVE is published for Jenkins Lambdatest Automation? stack.watch will email you.
Affected Versions
Jenkins Project Jenkins lambdatest-automation Plugin:- Before and including 1.20.10 is affected.
Exploit Probability
EPSS
0.02%
Percentile
5.45%
EPSS (Exploit Prediction Scoring System) scores estimate the probability that a vulnerability will be exploited in the wild within the next 30 days. The percentile shows you how this score compares to all other vulnerabilities.