ZeroHour

CVE-2024-39458

CVSS 3.1
3.1 low
EPSS
<1%p37
Published
()
Modified
Description

When Jenkins Structs Plugin 337.v1b_04ea_4df7c8 and earlier fails to configure a build step, it logs a warning message containing diagnostic information that may contain secrets passed as step parameters, potentially resulting in accidental exposure of secrets through the default system log.

Vendors
jenkins
Products
structs
Weakness
CWE-209
Vector
CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:L/I:N/A:N

In the news

No ingested article mentions this CVE yet.