NA

CVE-2022-38663

Published: 23/08/2022 Updated: 02/11/2023
CVSS v3 Base Score: 6.5 | Impact Score: 3.6 | Exploitability Score: 2.8
VMScore: 0

Vulnerability Summary

Jenkins Git Plugin 4.11.4 and previous versions does not properly mask (i.e., replace with asterisks) credentials in the build log provided by the Git Username and Password (`gitUsernamePassword`) credentials binding.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

jenkins git

Vendor Advisories

Jenkins Git Plugin 4114 and earlier does not properly mask (ie, replace with asterisks) credentials in the build log provided by the Git Username and Password (`gitUsernamePassword`) credentials binding ...