CVE-2019-11350

CRITICAL

CloudBees Jenkins Operations Center <2.150.2.3 - Info Disclosure

Title source: llm
STIX 2.1

Description

CloudBees Jenkins Operations Center 2.150.2.3, when an expired trial license exists, allows Cleartext Password Storage and Retrieval via the proxy configuration page.

Scores

CVSS v3 9.8
EPSS 0.0034
EPSS Percentile 57.1%
Attack Vector NETWORK
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

Details

CWE
CWE-522
Status published
Products (1)
cloudbees/jenkins_operations_center 2.150.2.3
Published Apr 19, 2019
Tracked Since Feb 18, 2026