CVE-2023-30528

6.5MEDIUM

Jenkins WSO2 Oauth Plugin 1.0 and earlier does not mask the WSO2 Oauth client secret on the global configuration form, increasing the potential for attackers to observe and capture it.

发布于: 4/12/2023更新于: 2/7/2025

描述

Jenkins WSO2 Oauth Plugin 1.0 and earlier does not mask the WSO2 Oauth client secret on the global configuration form, increasing the potential for attackers to observe and capture it.

AI分析AI驱动

受影响产品

jenkinswso2_oauth

参考资料