CVE-2022-27195
CVE-2022-27195
Jenkins Parameterized Trigger Plugin 2.43 and earlier captures environment variables passed to builds triggered using Jenkins Parameterized Trigger Plugin, including password parameter values, in their `build.xml` files. These values are stored unencrypted and can be viewed by users with access to the Jenkins controller file system.
Productos afectados
Jenkins project · Jenkins Parameterized Trigger Plugin¿Quieres saber si tu infraestructura está expuesta a esto?
Hablar con TrueHacking →