-
CVSS Score
-Basic Information
CVE ID
-
GHSA ID
-
EPSS Score
-
CWE
-
Published
-
Updated
-
KEV Status
-
Technology
-
The vulnerability stems from unencrypted storage of proxy passwords in job config.xml files. The core issue would manifest in functions that handle password persistence and retrieval. The DTMSBuilder class would contain the proxy password field with plaintext handling:
| Package Name | Ecosystem | Vulnerable Versions | First Patched Version |
|---|---|---|---|
| com.datatheorem.mobileappsecurity.jenkins.plugin:datatheorem-mobile-app-security | maven | < 1.4.0 | 1.4.0 |
Ongoing coverage of React2Shell