ZeroHour

CVE-2018-1000142

CVSS 3.0
7.8 high
EPSS
<1%p31
Published
()
Modified
Description

An exposure of sensitive information vulnerability exists in Jenkins GitHub Pull Request Builder Plugin version 1.39.0 and older in GhprbCause.java that allows an attacker with local file system access to obtain GitHub credentials.

Vendors
jenkins
Products
github pull request builder
Weakness
CWE-200
Vector
CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.