Sensitive Information Exposure in Jenkins meliora-testlab Plugin

Sensitive Information Exposure in Jenkins meliora-testlab Plugin

CVE-2018-1999031 · MEDIUM Severity

AV:N/AC:L/AU:S/C:P/I:N/A:N

An exposure of sensitive information vulnerability exists in Jenkins meliora-testlab Plugin 1.14 and earlier in TestlabNotifier.java that allows attackers with file system access to the Jenkins master to obtain the API key stored in this plugin's configuration.

Learn more about our Api Penetration Testing.