You're viewing a limited, public preview. Log in for full access.
No AI analysis yet.
Missing permission checks in Jenkins CodeSonar Plugin 3.6.0 and earlier allow attackers with Overall/Read permission to enumerate credentials IDs of credentials stored in Jenkins.
6.6th percentile
This link opens an external site that isn't part of the platform.