Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2023-30528


Jenkins WSO2 Oauth Plugin 1.0 and earlier does not mask the WSO2 Oauth client secret on the global configuration form, increasing the potential for attackers to observe and capture it.


Published

2023-04-12T18:15:11.887

Last Modified

2025-02-07T19:15:23.823

Status

Modified

Source

[email protected]

Severity

CVSSv3.1: 6.5 (MEDIUM)

Weaknesses
  • Type: Primary
    CWE-312
  • Type: Secondary
    CWE-312

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Application jenkins wso2_oauth ≤ 1.0 Yes

References