Beveiligingsadvies

CVE-2024-34147

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2024-05-02 13:28:05
Laatst bijgewerkt 2025-02-13 17:52:26
Toegewezen door jenkins
CVSS-score 4.3
Status PUBLISHED

Beschrijving

Jenkins Telegram Bot Plugin 1.4.0 and earlier stores the Telegram Bot token unencrypted in its global configuration file on the Jenkins controller where it can be viewed by users with access to the Jenkins controller file system.