CVE-2019-10407

Severity CVSS v4.0:
Pending analysis
Type:
CWE-200 Information Leak / Disclosure
Publication date:
25/09/2019
Last modified:
25/10/2023

Description

Jenkins Project Inheritance Plugin 2.0.0 and earlier displayed a list of environment variables passed to a build without masking sensitive variables contributed by the Mask Passwords Plugin.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:jenkins:project_inheritance:*:*:*:*:*:jenkins:*:* 2.0.0 (including)