When Jenkins Structs Plugin 337.v1b_04ea_4df7c8 and earlier fails to configure a build step, it logs a warning message containing diagnostic information that may contain secrets passed as step parameters, potentially resulting in accidental exposure of secrets through the default system log.
References
Configurations
No configuration.
History
05 Nov 2024, 21:35
Type | Values Removed | Values Added |
---|---|---|
CVSS |
v2 : v3 : |
v2 : unknown
v3 : 3.1 |
CWE | CWE-209 |
27 Jun 2024, 12:47
Type | Values Removed | Values Added |
---|---|---|
Summary |
|
26 Jun 2024, 18:15
Type | Values Removed | Values Added |
---|---|---|
References |
|
26 Jun 2024, 17:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2024-06-26 17:15
Updated : 2024-11-05 21:35
NVD link : CVE-2024-39458
Mitre link : CVE-2024-39458
CVE.ORG link : CVE-2024-39458
JSON object : View
Products Affected
No product.
CWE
CWE-209
Generation of Error Message Containing Sensitive Information