Description
Jenkins Build Notifications Plugin 1.5.0 and earlier transmits tokens in plain text as part of the global Jenkins configuration form, potentially resulting in their exposure.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2022-6270 | Jenkins Build Notifications Plugin 1.5.0 and earlier transmits tokens in plain text as part of the global Jenkins configuration form, potentially resulting in their exposure. |
Github GHSA |
GHSA-7298-w54j-q7wm | Cleartext Storage of Sensitive Information in Jenkins Build Notifications Plugin |
References
History
No history.
Status: PUBLISHED
Assigner: jenkins
Published:
Updated: 2024-08-03T09:22:10.664Z
Reserved: 2022-06-29T00:00:00.000Z
Link: CVE-2022-34801
No data.
Status : Modified
Published: 2022-06-30T18:15:13.717
Modified: 2026-06-17T04:50:56.970
Link: CVE-2022-34801
No data.
OpenCVE Enrichment
No data.
Weaknesses
-
CWE-319
Cleartext Transmission of Sensitive Information
EUVD
Github GHSA