CVE-2022-20618

Publication date

2022-01-12 19:05:54

Family

jenkins

State

PUBLISHED

Description

A missing permission check in Jenkins Bitbucket Branch Source Plugin 737.vdf9dc06105be and earlier allows attackers with Overall/Read access to enumerate credentials IDs of credentials stored in Jenkins.