296,733
Total vulnerabilities in the database
Jenkins GitLab Plugin 1.5.31 and earlier does not perform a permission check in an HTTP endpoint, allowing attackers with Overall/Read permission to enumerate credentials IDs of credentials stored in Jenkins.
| Software | From | Fixed in |
|---|---|---|
| jenkins / gitlab | - | 1.5.31.x |
org.jenkins-ci.plugins / gitlab-plugin
|
- | 1.5.32 |