QID 997939
Date Published: 2024-04-04
QID 997939: Java (Maven) Security Update for org.jenkins-ci.plugins:aqua-serverless (GHSA-56gj-927p-mfph)
Jenkins Aqua Security Serverless Scanner Plugin 1.0.4 and earlier transmitted configured passwords in plain text as part of job configuration forms, potentially resulting in their exposure.
Successful exploitation of this vulnerability could lead to a security breach or could affect integrity, availability, and confidentiality.
Solution
Refer to Github security advisory GHSA-56gj-927p-mfph for updates and patch information.
Vendor References
- GHSA-56gj-927p-mfph -
github.com/advisories/GHSA-56gj-927p-mfph
CVEs related to QID 997939
Software Advisories
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| GHSA-56gj-927p-mfph | org.jenkins-ci.plugins:aqua-serverless |
|