NA

CVE-2023-40340

Published: 16/08/2023 Updated: 22/08/2023
CVSS v3 Base Score: 7.5 | Impact Score: 3.6 | Exploitability Score: 3.9
VMScore: 0

Vulnerability Summary

Jenkins NodeJS Plugin 1.6.0 and previous versions does not properly mask (i.e., replace with asterisks) credentials specified in the Npm config file in Pipeline build logs.

Vulnerable Product Search on Vulmon Subscribe to Product

jenkins nodejs