CVE-2019-11350

CRITICAL

CloudBees Jenkins Operations Center <2.150.2.3 - Info Disclosure

Title source: llm

Description

CloudBees Jenkins Operations Center 2.150.2.3, when an expired trial license exists, allows Cleartext Password Storage and Retrieval via the proxy configuration page.

Scores

CVSS v3 9.8
EPSS 0.0036
EPSS Percentile 57.7%
Attack Vector NETWORK
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

Classification

CWE
CWE-522
Status published

Affected Products (1)

cloudbees/jenkins_operations_center

Timeline

Published Apr 19, 2019
Tracked Since Feb 18, 2026