-
CVSS Score
-Basic Information
CVE ID
-
GHSA ID
-
EPSS Score
-
CWE
-
Published
-
Updated
-
KEV Status
-
Technology
-
| Package Name | Ecosystem | Vulnerable Versions | First Patched Version |
|---|---|---|---|
| org.jenkins-ci.plugins:reportportal | maven | <= 0.5 |
The vulnerability explicitly involves two key failures: 1) Unencrypted storage in config.xml, which would be handled by job configuration persistence logic, and 2) Lack of UI masking, which would be implemented in form rendering. While specific method names aren't provided, Jenkins plugin architecture patterns strongly suggest these components must exist:
Confidence remains high as these patterns are fundamental to Jenkins plugin development and the vulnerability description directly maps to these components.
Ongoing coverage of React2Shell