CVE-2022-38665 Information
Aug 24, 2022
cve
Description
Jenkins CollabNet Plugins Plugin 2.0.8 and earlier stores a RabbitMQ password unencrypted in its global configuration file on the Jenkins controller where it can be viewed by users with access to the Jenkins controller file system.
Reference
https://www.jenkins.io/security/advisory/2022-08-23/#SECURITY-2157 http://www.openwall.com/lists/oss-security/2022/08/23/2
Share on: