CVE-2023-33000: High severity Jenkins Ns-nd Integration Performance Publisher Jenkins vulnerability
Jenkins NS-ND Integration Performance Publisher Plugin 4.8.0.149 and earlier does not mask credentials displayed on the configuration form, increasing the potential for attackers to observe and capture them.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
Jenkins NS-ND Integration Performance Publisher Pluginto a version that resolves this vulnerability.Fixed in 4.8.0.149
Event History
Frequently Asked Questions
What is the severity of CVE-2023-33000?
CVE-2023-33000 is rated as a high-severity vulnerability due to the exposure of sensitive credentials.
How do I fix CVE-2023-33000?
To fix CVE-2023-33000, upgrade the Jenkins NS-ND Integration Performance Publisher Plugin to version 4.8.0.150 or later.
What type of vulnerability is CVE-2023-33000?
CVE-2023-33000 is a credential exposure vulnerability that affects Jenkins.
Who is affected by CVE-2023-33000?
CVE-2023-33000 affects users of the Jenkins NS-ND Integration Performance Publisher Plugin versions 4.8.0.149 and earlier.
What is the impact of CVE-2023-33000?
The impact of CVE-2023-33000 is the potential for unauthorized observers to capture exposed credentials, leading to security breaches.