Jenkins Aqua MicroScanner Plugin 1.0.7 and earlier transmitted configured credentials in plain text as part of the global Jenkins configuration form, potentially resulting in their exposure.
Advisories
Source ID Title
EUVD EUVD EUVD-2022-5429 Jenkins Aqua MicroScanner Plugin 1.0.7 and earlier transmitted configured credentials in plain text as part of the global Jenkins configuration form, potentially resulting in their exposure.
Github GHSA Github GHSA GHSA-vv4q-2w98-4v8g Jenkins Aqua MicroScanner Plugin showed plain text credential in configuration form
Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: jenkins

Published:

Updated: 2024-08-04T22:24:18.183Z

Reserved: 2019-03-29T00:00:00

Link: CVE-2019-10427

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2019-09-25T16:15:12.040

Modified: 2024-11-21T04:19:06.997

Link: CVE-2019-10427

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.