Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2023-30531


Jenkins Consul KV Builder Plugin 2.0.13 and earlier does not mask the HashiCorp Consul ACL Token on the global configuration form, increasing the potential for attackers to observe and capture it.


Published

2023-04-12T18:15:12.670

Last Modified

2025-02-07T19:15:24.343

Status

Modified

Source

[email protected]

Severity

CVSSv3.1: 6.5 (MEDIUM)

Weaknesses
  • Type: Primary
    CWE-312
  • Type: Secondary
    CWE-312

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Application jenkins consul_kv_builder ≤ 2.0.13 Yes

References