CVE-2019-10367

Severity CVSS v4.0:
Pending analysis
Type:
CWE-532 Information Exposure Through Log Files
Publication date:
07/08/2019
Last modified:
25/10/2023

Description

Due to an incomplete fix of CVE-2019-10343, Jenkins Configuration as Code Plugin 1.26 and earlier did not properly apply masking to some values expected to be hidden when logging the configuration being applied.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:jenkins:configuration_as_code:*:*:*:*:*:jenkins:*:* 1.26 (including)