NA

CVE-2022-36888

Published: 27/07/2022 Updated: 22/11/2023
CVSS v3 Base Score: 6.5 | Impact Score: 3.6 | Exploitability Score: 2.8
VMScore: 0

Vulnerability Summary

A missing permission check in Jenkins HashiCorp Vault Plugin 354.vdb_858fd6b_f48 and previous versions allows attackers with Overall/Read permission to obtain credentials stored in Vault with attacker-specified path and keys.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

jenkins hashicorp vault