Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2023-50773


Jenkins Dingding JSON Pusher Plugin 2.0 and earlier does not mask access tokens displayed on the job configuration form, increasing the potential for attackers to observe and capture them.


Published

2023-12-13T18:15:44.183

Last Modified

2024-11-21T08:37:17.213

Status

Modified

Source

[email protected]

Severity

CVSSv3.1: 4.3 (MEDIUM)

Weaknesses
  • Type: Primary
    CWE-312

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Application jenkins dingding_json_pusher ≤ 2.0 Yes

References