CVE-2019-10398 PUBLISHED CVSS 5.5 MEDIUM

Jenkins Beaker Builder Plugin 1.9 and earlier stored credentials unencrypted in its global configuration file on the Jenkins master where they could be viewed by users with access to the master file system.

EPSS 0.01% · 1.4th percentile

Risk Scores

CVSS v3.1
5.5
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
EPSS Score
0.01%
1.4th percentile

Affected Products

VendorProductVersions
Mavenorg.jenkins-ci.plugins:beaker-builder0
Jenkins projectJenkins Beaker Builder Plugin1.9 and earlier
jenkinsbeaker_builder0

Timeline

References

Open in Interactive Console →