ZeroHour

CVE-2023-2633

CVSS 3.1
4.3 medium
EPSS
<1%p34
Published
()
Modified
Description

Jenkins Code Dx Plugin 3.1.0 and earlier does not mask Code Dx server API keys displayed on the configuration form, increasing the potential for attackers to observe and capture them.

Vendors
jenkins
Products
code dx
Weakness
CWE-256, CWE-522
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N

In the news

No ingested article mentions this CVE yet.