Beveiligingsadvies

CVE-2022-30952

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2022-05-17 00:00:00
Laatst bijgewerkt 2024-08-03 07:03:39
Toegewezen door jenkins
CVSS-score geen score
Status PUBLISHED

Beschrijving

Jenkins Pipeline SCM API for Blue Ocean Plugin 1.25.3 and earlier allows attackers with Job/Configure permission to access credentials with attacker-specified IDs stored in the private per-user credentials stores of any attacker-specified user in Jenkins.