Search Results (2 CVEs found)

CVE Vendors Products Updated CVSS v3.1
CVE-2025-64135 1 Jenkins 2 Eggplant, Jenkins 2025-10-30 5.9 Medium
Jenkins Eggplant Runner Plugin 0.0.1.301.v963cffe8ddb_8 and earlier sets the Java system property `jdk.http.auth.tunneling.disabledSchemes` to an empty value, disabling a protection mechanism of the Java runtime.
CVE-2019-10385 1 Jenkins 1 Eggplant 2024-11-21 6.5 Medium
Jenkins eggPlant Plugin 2.2 and earlier stores credentials unencrypted in job config.xml files on the Jenkins master where they can be viewed by users with Extended Read permission, or access to the master file system.