-
CVSS Score
-| Package Name | Ecosystem | Vulnerable Versions | First Patched Version |
|---|---|---|---|
| org.jenkins-ci.plugins:snsnotify | maven | < 2.37 | 2.37 |
The vulnerability stemmed from handling AWS secrets as plain strings rather than using Jenkins' credential management system. The commit diff shows:
A Semantic Attack on Google Gemini - Read the Latest Research