← Back to CVE List
CVE-2019-10460
Jenkins Bitbucket OAuth Plugin 0.9 and earlier stored credentials unencrypted in the global config.xml configuration file on the Jenkins master where they could be viewed by users with access to the master file system.
> MITRE Terms of Use apply – see LICENSE‑MITRE.txt