CVE-2019-1003070

Jenkins veracode-scanner Plugin stores credentials unencrypted in its global configuration file on the Jenkins master where they can be viewed by users with access to the master file system.
Source: NIST
CVE-2019-1003070

Leave a Reply

Your email address will not be published.