Description
Jenkins before 2.3 and LTS before 1.651.2 allow remote authenticated users with extended read access to obtain sensitive password information by reading a job configuration.
Remediation
References
Related Vulnerabilities
Apache Tomcat Improper Encoding or Escaping of Output Vulnerability (CVE-2021-30640)
WordPress Plugin Amelia-Events & Appointments Booking Calendar Multiple Vulnerabilities (1.0.45)
Java Denial of Service (DoS) Vulnerability (CVE-2018-11212)
WordPress Plugin BA Book Everything Cross-Site Scripting (1.3.24)