yocto ▾
›
master ▾
›
vulnerability
›
CVE-2019-10329
Component Overview
Vulnerability Overview
Name
CVE-2019-10329
Source
NVD (
link
)
Debian (
link
)
Description
Jenkins InfluxDB Plugin 1.21 and earlier stored credentials unencrypted in its global configuration file on the Jenkins master where they can be viewed by users with access to the master file system.
CWEs
CWE-522
Published Date
May 31, 2019
Updated Date
Jun 17, 2026
Workaround
-
Advisories
http://www.openwall.com/lists/oss-security/2019/05/31/2
Mailing List
http://www.securityfocus.com/bid/108540
VDB Entry
https://jenkins.io/security/advisory/2019-05-31/#SECURITY-1403
Vendor Advisory
http://www.openwall.com/lists/oss-security/2019/05/31/2
Mailing List
http://www.securityfocus.com/bid/108540
VDB Entry
https://jenkins.io/security/advisory/2019-05-31/#SECURITY-1403
Vendor Advisory
Analysis
#
Affected Component
Analysis
influxdb
False Positive
Vulnerability Ratings
#
8.8
CVSSv31
4
CVSSv2
Others affected components
#
Name
Project
Project Version
Version
Status
influxdb
yocto
kirkstone
1.8.10
Not Affected
influxdb
yocto
scarthgap
1.8.10
False Positive