Security Advisory

CVE-2019-10320

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2019-05-21 13:00:22
Last updated 2024-08-04 22:17:20
Assigner jenkins
State PUBLISHED

Description

Jenkins Credentials Plugin 2.1.18 and earlier allowed users with permission to create or update credentials to confirm the existence of files on the Jenkins master with an attacker-specified path, and obtain the certificate content of files containing a PKCS#12 certificate.