CVE-2023-39152
3Vexday Risk Score
No sign of exploitation. No public exploitation artifact known so far.
ssvc Trackepss 0.8%
exploitation probability
0.8%top 46% of all CVEs
observed exploitation
nono source reports it
Always-incorrect control flow implementation in Jenkins Gradle Plugin 2.8 may result in credentials not being masked (i.e., replaced with asterisks) in the build log in some circumstances.
Affected products
Jenkins Project · Jenkins Gradle Plugin