Jenkins Code Dx Plugin 3.1.0 and earlier does not mask Code Dx server API keys displayed on the configuration form, increasing the potential for attackers to observe and capture them.
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: SNPS

Published: 2023-05-16T17:56:40.703Z

Updated: 2023-05-16T17:56:40.703Z

Reserved: 2023-05-10T15:00:46.137Z


Link: CVE-2023-2633

JSON object: View

cve-icon NVD Information

Status : Analyzed

Published: 2023-05-16T18:15:17.453

Modified: 2023-05-25T16:09:27.890


Link: CVE-2023-2633

JSON object: View

cve-icon Redhat Information

No data.