Jenkins
Jenkins Security Advisory 2022-08-23
2022-08-23 Aug 23, 2022 Source: Vendor
Imported by the Jenkins advisory catcher from https://www.jenkins.io/security/advisory/2022-08-23/. 4 SECURITY issues listed. Draft. Review before publishing.
Source of record
The credited names below are quoted verbatim from the vendor's own advisory:
https://www.jenkins.io/security/advisory/2022-08-23/
Are you credited here?
Sign in and claim your line: it is yours immediately, no review queue.
The name the vendor printed stays next to your handle for anyone to check against the advisory above,
and any member who thinks a claim is wrong can refute it.
Credited
5 lines
Showing 1–5 of 5
CVE-2021-25738
BR2022-0000-010176
SECURITY-2448
unclaimed
RCE vulnerability in Kubernetes Continuous Deploy Plugin
Credited as Jordy Versmissen
CVE-2022-38664
BR2022-0000-010177
SECURITY-2765
unclaimed
Stored XSS vulnerability in Job Configuration History Plugin
Credited as Kevin Guerroudj, CloudBees, Inc.
CVE-2022-38663
BR2022-0000-010178
SECURITY-2796
unclaimed
Improper masking of credentials in Git Plugin
Credited as Peter Darton, i2group.com
CVE-2022-38663
BR2022-0000-010179
SECURITY-2796
unclaimed
Improper masking of credentials in Git Plugin
Credited as Stefano Mazzucco, Mindera
CVE-2022-38665
BR2022-0000-010180
SECURITY-2157
unclaimed
RabbitMQ password stored in plain text by CollabNet Plugins Plugin
Credited as Son Nguyen (@s0nnguy3n_)