Skip to main content

Vendor/product archive

jenkins / spira_importer CVEs

Beta · best-effort

2 CVEs tagged to jenkins / spira_importer0 Critical, 1 High, 1 Medium, 0 Low, 0 Unrated.

CVE-2019-16558

Published Dec 17, 2019

Jenkins Spira Importer Plugin 3.2.3 and earlier disables SSL/TLS certificate validation for the Jenkins master JVM.

CVSS 8.2 · High
Vendor/product tagsBeta · best-effort

CVE-2019-16543

Published Nov 21, 2019

Jenkins Spira Importer Plugin 3.2.2 and earlier stores credentials unencrypted in its global configuration file on the Jenkins master where they can be viewed by users with access…

CVSS 5.5 · Medium
Vendor/product tagsBeta · best-effort
Showing 1-2 of 2 CVEsPage 1 of 1