CVE & Exploit Intelligence Database

Updated 3h ago

Search and track vulnerabilities with real-time exploit intelligence. Cross-reference CVEs against public exploits from ExploitDB, Metasploit, GitHub, and Nuclei — with CVSS and EPSS scoring, CISA KEV monitoring, and AI-powered exploit analysis.

338,223 CVEs tracked 53,274 with exploits 4,730 exploited in wild 1,542 CISA KEV 3,929 Nuclei templates 37,826 vendors 42,555 researchers
1,290 results Clear all
CVE-2019-10630 8.8 HIGH EPSS 0.00
Zyxel Nas326 Firmware < 5.21 - Insufficiently Protected Credentials
A plaintext password vulnerability in the Zyxel NAS 326 through 5.21 allows an elevated privileged user to get the admin password of the device.
CWE-522 Apr 09, 2019
CVE-2019-10299 8.8 HIGH EPSS 0.00
Jenkins Cloudcoreo Deploytime - Insufficiently Protected Credentials
Jenkins CloudCoreo DeployTime Plugin stores credentials unencrypted in its global configuration file on the Jenkins master where they can be viewed by users with access to the master file system.
CWE-522 Apr 04, 2019
CVE-2019-10298 8.8 HIGH EPSS 0.00
Jenkins Koji - Insufficiently Protected Credentials
Jenkins Koji Plugin stores credentials unencrypted in its global configuration file on the Jenkins master where they can be viewed by users with access to the master file system.
CWE-522 Apr 04, 2019
CVE-2019-10297 8.8 HIGH EPSS 0.00
Jenkins Sametime - Insufficiently Protected Credentials
Jenkins Sametime Plugin stores credentials unencrypted in its global configuration file on the Jenkins master where they can be viewed by users with access to the master file system.
CWE-522 Apr 04, 2019
CVE-2019-10296 8.8 HIGH EPSS 0.00
Jenkins Serena Sra Deploy - Insufficiently Protected Credentials
Jenkins Serena SRA Deploy Plugin stores credentials unencrypted in its global configuration file on the Jenkins master where they can be viewed by users with access to the master file system.
CWE-522 Apr 04, 2019
CVE-2019-10295 8.8 HIGH EPSS 0.00
Jenkins Crittercism-dsym - Insufficiently Protected Credentials
Jenkins crittercism-dsym Plugin stores credentials unencrypted in job config.xml files on the Jenkins master where they can be viewed by users with Extended Read permission, or access to the master file system.
CWE-522 Apr 04, 2019
CVE-2019-10294 8.8 HIGH EPSS 0.00
Jenkins Kmap - Insufficiently Protected Credentials
Jenkins Kmap Plugin stores credentials unencrypted in job config.xml files on the Jenkins master where they can be viewed by users with Extended Read permission, or access to the master file system.
CWE-522 Apr 04, 2019
CVE-2019-10291 8.8 HIGH EPSS 0.00
Jenkins Netsparker Cloud Scan - Insufficiently Protected Credentials
Jenkins Netsparker Cloud Scan Plugin 1.1.5 and older stored credentials unencrypted in its global configuration file on the Jenkins master where they could be viewed by users with access to the master file system.
CWE-522 Apr 04, 2019
CVE-2019-10288 8.8 HIGH EPSS 0.00
Jenkins Jabber Server - Insufficiently Protected Credentials
Jenkins Jabber Server Plugin stores credentials unencrypted in its global configuration file on the Jenkins master where they can be viewed by users with access to the master file system.
CWE-522 Apr 04, 2019
CVE-2019-10287 8.8 HIGH EPSS 0.00
Jenkins Youtrack-plugin < 0.7.1 - Insufficiently Protected Credentials
Jenkins youtrack-plugin Plugin 0.7.1 and older stored credentials unencrypted in its global configuration file on the Jenkins master where they could be viewed by users with access to the master file system.
CWE-522 Apr 04, 2019
CVE-2019-10286 8.8 HIGH EPSS 0.00
Jenkins Deployhub < 8.0.14 - Insufficiently Protected Credentials
Jenkins DeployHub Plugin stores credentials unencrypted in job config.xml files on the Jenkins master where they can be viewed by users with Extended Read permission, or access to the master file system.
CWE-522 Apr 04, 2019
CVE-2019-10285 8.8 HIGH EPSS 0.00
Jenkins Minio Storage - Insufficiently Protected Credentials
Jenkins Minio Storage Plugin stores credentials unencrypted in its global configuration file on the Jenkins master where they can be viewed by users with access to the master file system.
CWE-522 Apr 04, 2019
CVE-2019-10284 8.8 HIGH EPSS 0.00
Jenkins Diawi Upload - Insufficiently Protected Credentials
Jenkins Diawi Upload Plugin stores credentials unencrypted in job config.xml files on the Jenkins master where they can be viewed by users with Extended Read permission, or access to the master file system.
CWE-522 Apr 04, 2019
CVE-2019-10283 8.8 HIGH EPSS 0.00
Jenkins Mabl < 0.0.13 - Insufficiently Protected Credentials
Jenkins mabl Plugin stores credentials unencrypted in job config.xml files on the Jenkins master where they can be viewed by users with Extended Read permission, or access to the master file system.
CWE-522 Apr 04, 2019
CVE-2019-10282 8.8 HIGH EPSS 0.00
Jenkins Klaros-testmanagement - Insufficiently Protected Credentials
Jenkins Klaros-Testmanagement Plugin stores credentials unencrypted in job config.xml files on the Jenkins master where they can be viewed by users with Extended Read permission, or access to the master file system.
CWE-522 Apr 04, 2019
CVE-2019-10281 8.8 HIGH EPSS 0.00
Jenkins Relution Enterprise Appstore ... - Insufficiently Protected Credentials
Jenkins Relution Enterprise Appstore Publisher Plugin stores credentials unencrypted in its global configuration file on the Jenkins master where they can be viewed by users with access to the master file system.
CWE-522 Apr 04, 2019
CVE-2019-10280 8.8 HIGH EPSS 0.00
Jenkins Assembla Auth < 1.13 - Insufficiently Protected Credentials
Jenkins Assembla Auth Plugin stores credentials unencrypted in the global config.xml configuration file on the Jenkins master where they can be viewed by users with access to the master file system.
CWE-522 Apr 04, 2019
CVE-2019-10277 8.8 HIGH EPSS 0.00
Jenkins Starteam - Insufficiently Protected Credentials
Jenkins StarTeam Plugin stores credentials unencrypted in job config.xml files on the Jenkins master where they can be viewed by users with Extended Read permission, or access to the master file system.
CWE-522 Apr 04, 2019
CVE-2019-1003097 6.5 MEDIUM EPSS 0.00
Jenkins Crowd Integration Plugin - Info Disclosure
Jenkins Crowd Integration Plugin stores credentials unencrypted in the global config.xml configuration file on the Jenkins master where they can be viewed by users with access to the master file system.
CWE-522 Apr 04, 2019
CVE-2019-1003096 6.5 MEDIUM EPSS 0.00
Jenkins TestFairy Plugin - Info Disclosure
Jenkins TestFairy Plugin stores credentials unencrypted in job config.xml files on the Jenkins master where they can be viewed by users with Extended Read permission, or access to the master file system.
CWE-522 Apr 04, 2019