ZeroHour

CVE-2020-2181

CVSS 3.1
6.5 medium
EPSS
1%p63
Published
()
Modified
Description

Jenkins Credentials Binding Plugin 1.22 and earlier does not mask (i.e., replace with asterisks) secrets in the build log when the build contains no build steps.

Vendors
jenkins
Products
credentials binding
Weakness
CWE-522
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N

In the news

No ingested article mentions this CVE yet.