CVE-2014-3680
CVE-2014-3680
Jenkins before 1.583 and LTS before 1.565.3 allows remote authenticated users with the Job/READ permission to obtain the default value for the password field of a parameterized job by reading the DOM.
Affected products
n/a · n/aWant to know if your infrastructure is exposed to this?
Talk to TrueHacking →