Junglewise Threat Intelligence

CVE-2022-25186: Agent-to-controller security bypass in Jenkins HashiCorp Vault Plugin

CVE-2022-25186 · Severity: low · CVSS 3.1 · Published 2022-02-16

Technologies: com.datapipe.jenkins.plugins:hashicorp-vault-plugin (Maven). Vendors: Maven.

Executive brief

Agent-to-controller security bypass in Jenkins HashiCorp Vault Plugin

Affected products

  • Maven com.datapipe.jenkins.plugins:hashicorp-vault-plugin

Related threats