CVE-2022-23117

Publication date

2022-01-12 19:06:25

Family

jenkins

State

PUBLISHED

Description

Jenkins Conjur Secrets Plugin 1.0.9 and earlier implements functionality that allows attackers able to control agent processes to retrieve all username/password credentials stored on the Jenkins controller.