ZeroHour

CVE-2023-50773

CVSS 3.1
4.3 medium
EPSS
<1%p28
Published
()
Modified
Description

Jenkins Dingding JSON Pusher Plugin 2.0 and earlier does not mask access tokens displayed on the job configuration form, increasing the potential for attackers to observe and capture them.

Vendors
jenkins
Products
dingding json pusher
Weakness
CWE-312
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N

In the news

No ingested article mentions this CVE yet.