×
Jul 31, 2019 · Maven Release Plug-in Plugin now stores credentials encrypted. Configuration as Code Plugin failed to mask secrets in system log messages.
The key to decrypt secrets is stored in the secrets/ directory which has the highest protection, and is recommended to be excluded from backups. · Secret fields ...
Missing: web | Show results with:web
May 6, 2020 · Description: Credentials Binding Plugin allows specifying passwords and other secrets as environment variables, and will hide them from console ...
Oct 8, 2020 · This results in a stored cross-site scripting (XSS) vulnerability exploitable by attackers with Job/Configure permission. Active Choices ...
Oct 11, 2017 · Jenkins Security Advisory 2017-10-11. This advisory announces multiple vulnerabilities in Jenkins (weekly and LTS), and these plugins: Maven ...
Missing: web | Show results with:web
May 31, 2019 · Description: Warnings Plugin rendered the name of a custom warnings parser unescaped on Jenkins web pages. This allowed attackers with Job/ ...
Dec 17, 2019 · Rundeck Plugin 3.6.6 stores credentials in its configuration encrypted once global and/or job configurations are saved again. Redgate SQL ...
Jul 30, 2018 · This advisory announces vulnerabilities in the following Jenkins deliverables: AccuRev Plugin · Agiletestware Pangolin Connector for ...
Permission, which represents an activity that requires a security privilege. This is usually a verb, like "configure", "administer", "tag", etc.
Mar 1, 2024 · This plugin allows you to store credentials in Jenkins.