MEDIUM
Missing permission checks in Jenkins HCL AppScan Plugin 1.8.3 and earlier allow attackers with Overall/Read permission to enumerate credentials IDs of credentials stored in Jenkins
Published Aug 5, 2026
4.3
MEDIUMCVSS 3.1
EPSS 0.27%
Description
Affected products
Remediation
References (2)
Change history (0)
No recorded changes yet.