Vulnerabilities (CVE)

Filtered by vendor Jenkins Subscribe
Filtered by product Conjur Secrets
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2022-25190 1 Jenkins 1 Conjur Secrets 2023-11-30 4.0 MEDIUM 4.3 MEDIUM
A missing permission check in Jenkins Conjur Secrets Plugin 1.0.11 and earlier allows attackers with Overall/Read permission to enumerate credentials IDs of credentials stored in Jenkins.