A exposure of sensitive information vulnerability exists in Jenkins Kubernetes Plugin 1.7.0 and older in ContainerExecDecorator.java that results in sensitive variables such as passwords being written to logs.
Advisories
Source ID Title
EUVD EUVD EUVD-2022-5292 A exposure of sensitive information vulnerability exists in Jenkins Kubernetes Plugin 1.7.0 and older in ContainerExecDecorator.java that results in sensitive variables such as passwords being written to logs.
Github GHSA Github GHSA GHSA-v67x-gpg7-mwv3 Exposure of Sensitive Information in Jenkins Kubernetes Plugin
Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published:

Updated: 2024-09-17T03:02:32.064Z

Reserved: 2018-06-05T00:00:00Z

Link: CVE-2018-1000187

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2018-06-05T20:29:00.607

Modified: 2024-11-21T03:39:53.200

Link: CVE-2018-1000187

cve-icon Redhat

Severity : Low

Publid Date: 2018-06-04T00:00:00Z

Links: CVE-2018-1000187 - Bugzilla

cve-icon OpenCVE Enrichment

No data.