QID 996867
Date Published: 2024-01-31
QID 996867: Java (Maven) Security Update for org.jenkins-ci.plugins:credentials-binding (GHSA-38xm-xhvj-q2qf)
Jenkins Credentials Binding plugin allows specifying passwords and other secrets as environment variables, and will hide them from console output in builds.
Successful exploitation of this vulnerability could lead to a security breach or could affect integrity, availability, and confidentiality.
Solution
Refer to Github security advisory GHSA-38xm-xhvj-q2qf for updates and patch information.
Vendor References
- GHSA-38xm-xhvj-q2qf -
github.com/advisories/GHSA-38xm-xhvj-q2qf
CVEs related to QID 996867
Software Advisories
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| GHSA-38xm-xhvj-q2qf | org.jenkins-ci.plugins:credentials-binding |
|