CVE-2024-47803

4.3MEDIUM

Jenkins 2.478 and earlier, LTS 2.462.2 and earlier does not redact multi-line secret values in error messages generated for form submissions involving the `secretTextarea` form field.

发布于: 10/2/2024更新于: 3/19/2025

描述

Jenkins 2.478 and earlier, LTS 2.462.2 and earlier does not redact multi-line secret values in error messages generated for form submissions involving the `secretTextarea` form field.

AI分析AI驱动

受影响产品

jenkinsjenkins
jenkinsjenkins

参考资料