Jenkins Upload to pgyer Plugin stores credentials unencrypted in job config.xml files on the Jenkins master where they can be viewed by users with Extended Read permission, or access to the master file system.
                
            Metrics
Affected Vendors & Products
References
        History
                    No history.
 MITRE
                        MITRE
                    Status: PUBLISHED
Assigner: jenkins
Published: 2019-04-04T15:38:49
Updated: 2024-08-05T03:07:17.892Z
Reserved: 2019-04-03T00:00:00
Link: CVE-2019-1003089
 Vulnrichment
                        Vulnrichment
                    No data.
 NVD
                        NVD
                    Status : Modified
Published: 2019-04-04T16:29:01.837
Modified: 2024-11-21T04:17:53.217
Link: CVE-2019-1003089
 Redhat
                        Redhat
                    No data.