Security Advisory

CVE-2022-34807

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2022-06-30 17:48:43
Last updated 2024-08-03 09:22:10
Assigner jenkins
CVSS score not scored
State PUBLISHED

Description

Jenkins Elasticsearch Query Plugin 1.2 and earlier stores a password unencrypted in its global configuration file on the Jenkins controller where it can be viewed by users with access to the Jenkins controller file system.