CVE-2023-30515
CVE-2023-30515
Jenkins Thycotic DevOps Secrets Vault Plugin 1.0.0 and earlier does not properly mask (i.e., replace with asterisks) credentials in the build log when push mode for durable task logging is enabled.
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
Affected products
Jenkins Project · Jenkins Thycotic DevOps Secrets Vault PluginWant to know if your infrastructure is exposed to this?
Talk to TrueHacking →