ZeroHour

CVE-2019-10436

CVSS 3.1
6.5 medium
EPSS
<1%p60
Published
()
Modified
Description

An arbitrary file read vulnerability in Jenkins Google OAuth Credentials Plugin 0.9 and earlier allowed attackers able to configure jobs and credentials in Jenkins to obtain the contents of any file on the Jenkins master.

Vendors
jenkins
Products
google oauth credentials
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N

In the news

No ingested article mentions this CVE yet.