Skip to content

TechMedia

Header Image
Category

LOW

79 Posts

Featured

Posted byWpmaster
[safeurl-python] Withdrawn: safeurl-python contains Server-Side Request Forgery
Posted byWpmaster
[org.jenkins-ci.plugins:github-pr-coverage-status] Plaintext storage of Access Token in Jenkins GitHub Pull Request Coverage Status Plugin
Posted byWpmaster
[shopware/platform] Shopware’s log module vulnerable to Improper Output Neutralization
Posted byWpmaster
[rack] Denial of Service Vulnerability in Rack Content-Disposition parsing

[org.jenkins-ci.plugins:skytap] Credentials transmitted in plain text by Skytap Cloud CI Plugin

  • Posted inLOW
  • Posted byWpmaster
  • 05/25/202201/06/2023

Skytap Cloud CI Plugin stores credentials in job config.xml files as part of its configuration.
While the credentials are stored encrypted on disk, they are transmitted in plain text as part of the configuration form by Skytap Cloud CI Plugin 2.07 and …

[com.openmake:deployhub] Credentials transmitted in plain text by Jenkins DeployHub Plugin

  • Posted inLOW
  • Posted byWpmaster
  • 05/25/202201/06/2023

DeployHub Plugin stores credentials in job config.xml files as part of its configuration.
While the credentials are stored encrypted on disk, they are transmitted in plain text as part of the configuration form by DeployHub Plugin 8.0.14 and earlier. T…

[org.jenkins-ci.plugins:zephyr-for-jira-test-management] Jenkins Zephyr for JIRA Test Management Plugin stores credentials in plain text

  • Posted inLOW
  • Posted byWpmaster
  • 05/25/202201/07/2023

Zephyr for JIRA Test Management Plugin 1.5 and earlier stores Jira credentials unencrypted in its global configuration file com.thed.zephyr.jenkins.reporter.ZfjReporter.xml on the Jenkins controller. These credentials can be viewed by users with access…

[org.jenkins-ci.plugins:openshift-deployer] Credentials transmitted in plain text by OpenShift Deployer Plugin

  • Posted inLOW
  • Posted byWpmaster
  • 05/25/202201/14/2023

OpenShift Deployer Plugin stores credentials in its global configuration file org.jenkinsci.plugins.openshift.DeployApplication.xml on the Jenkins controller as part of its configuration.
While the credentials are stored encrypted on disk, they are tra…

[org.jenkins-ci.plugins:backlog] Credentials transmitted in plain text by Backlog Plugin

  • Posted inLOW
  • Posted byWpmaster
  • 05/25/202201/14/2023

Backlog Plugin stores credentials in job config.xml files as part of its configuration.
While the credentials are stored encrypted on disk, they are transmitted in plain text as part of the configuration form by Backlog Plugin 2.4 and earlier. These cr…

[org.jenkins-ci.plugins:sonar-quality-gates] Jenkins Sonar Quality Gates Plugin transmits credentials in plain text during configuration

  • Posted inLOW
  • Posted byWpmaster
  • 05/25/202201/07/2023

Sonar Quality Gates Plugin stores credentials in its global configuration file org.quality.gates.jenkins.plugin.GlobalConfig.xml on the Jenkins controller as part of its configuration. While the credentials are stored encrypted on disk, they are transm…

[org.jenkins-ci.plugins:quality-gates] Jenkins Quality Gates Plugin transmits credentials in plain text during configuration

  • Posted inLOW
  • Posted byWpmaster
  • 05/25/202201/07/2023

Quality Gates Plugin stores credentials in its global configuration file quality.gates.jenkins.plugin.GlobalConfig.xml on the Jenkins controller as part of its configuration. While the credentials are stored encrypted on disk, they are transmitted in p…

[org.jenkins-ci.plugins:repository-connector] Credentials transmitted in plain text by Repository Connector Plugin

  • Posted inLOW
  • Posted byWpmaster
  • 05/25/202201/14/2023

Repository Connector Plugin stores credentials in its global configuration file org.jvnet.hudson.plugins.repositoryconnector.RepositoryConfiguration.xml on the Jenkins controller as part of its configuration.
While the credentials are stored encrypted …

[org.jenkins-ci.plugins:zephyr-enterprise-test-management] Credentials stored in plain text by Zephyr Enterprise Test Management Plugin

  • Posted inLOW
  • Posted byWpmaster
  • 05/25/202201/14/2023

Zephyr Enterprise Test Management Plugin 1.9.1 and earlier stores its Zephyr password in plain text in the global configuration file com.thed.zephyr.jenkins.reporter.ZeeReporter.xml. This password can be viewed by users with access to the Jenkins contr…

[org.jenkins-ci.plugins:logstash] Credentials transmitted in plain text by Jenkins Logstash Plugin

  • Posted inLOW
  • Posted byWpmaster
  • 05/25/202201/14/2023

Logstash Plugin stores credentials in its global configuration file jenkins.plugins.logstash.LogstashConfiguration.xml on the Jenkins controller as part of its configuration.
While the credentials are stored encrypted on disk, they are transmitted in p…

Posts navigation

Previous Posts 1 … 4 5 6 7 8 Next Posts
TechMedia
WordPress theme by componentz

Archives

2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29 30
Hit enter to search or ESC to close