CyberRota Analysis
This is a high severity vulnerability with a CVSS score of 7.5. It affects Jenkins.
CVE
CVE-2023-40340
Severity
HIGH
CVSS
7.5
EPSS
0.53%
Jenkins
Original NVD Description
Jenkins NodeJS Plugin 1.6.0 and earlier does not properly mask (i.e., replace with asterisks) credentials specified in the Npm config file in Pipeline build logs.
Related CVEs
Other vulnerabilities affecting the same vendor(s)