[MAVEN:GHSA-V9W3-34XQ-HRJG] Tokens stored in plain text by PaaSLane Estimate Plugin

Severity Moderate
Affected Packages 1
CVEs 1

Jenkins PaaSLane Estimate Plugin 1.0.4 and earlier does not mask PaaSLane authentication tokens displayed on the job configuration form, increasing the potential for attackers to observe and capture them.

Package Affected Version
pkg:maven/com.cloudtp.jenkins/paaslane-estimate <= 1.0.4
ID
MAVEN:GHSA-V9W3-34XQ-HRJG
Severity
moderate
URL
https://github.com/advisories/GHSA-v9w3-34xq-hrjg
Published
2023-12-13T18:31:04
(9 months ago)
Modified
2023-12-18T21:43:29
(9 months ago)
Rights
Maven Security Team
Other Advisories
Type Package URL Namespace Name / Product Version Distribution / Platform Arch Patch / Fix
Affected pkg:maven/com.cloudtp.jenkins/paaslane-estimate com.cloudtp.jenkins paaslane-estimate <= 1.0.4
# CVE Description CVSS EPSS EPSS Trend (30 days) Affected Products Weaknesses Security Advisories Exploits PoC Pubblication Date Modification Date
# CVE Description CVSS EPSS EPSS Trend (30 days) Affected Products Weaknesses Security Advisories PoC Pubblication Date Modification Date
Loading...