Junglewise Threat Intelligence

CVE-2022-34779: Missing permission checks in Jenkins XebiaLabs XL Release Plugin allow enumerating credentials IDs

CVE-2022-34779 · Severity: low · CVSS 3.1 · Published 2022-07-01

Technologies: com.xebialabs.ci:xlrelease-plugin (Maven). Vendors: Maven.

Executive brief

Missing permission checks in Jenkins XebiaLabs XL Release Plugin allow enumerating credentials IDs

Affected products

  • Maven com.xebialabs.ci:xlrelease-plugin

Related threats