Executive brief
Jenkins HashiCorp Vault Plugin exposes system-scoped Vault credentials
Affected products
- Maven com.datapipe.jenkins.plugins:hashicorp-vault-plugin
Junglewise Threat Intelligence
CVE-2025-67642 · Severity: low · CVSS 3.1 · Published 2025-12-10
Technologies: com.datapipe.jenkins.plugins:hashicorp-vault-plugin (Maven). Vendors: Maven.
Jenkins HashiCorp Vault Plugin exposes system-scoped Vault credentials