Jenkins project Jenkins AWS CodeDeploy Plugin version 1.19 and earlier contains a File and Directory Information Exposure vulnerability in AWSCodeDeployPublisher.java that can result in Disclosure of environment variables. This vulnerability appears to have been fixed in 1.20 and later.
References
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: mitre

Published: 2018-07-09T13:00:00

Updated: 2018-07-09T12:57:01

Reserved: 2018-06-19T00:00:00


Link: CVE-2018-1000402

JSON object: View

cve-icon NVD Information

Status : Analyzed

Published: 2018-07-09T13:29:00.257

Modified: 2018-09-10T15:29:11.453


Link: CVE-2018-1000402

JSON object: View

cve-icon Redhat Information

No data.

CWE