VendorsSonarSourcejenkins_pluginany version
Vulnerabilities

SonarSource Jenkins Plugin for SonarQube any version

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

1CVEs
CVE-2013-5676
The Jenkins Plugin for SonarQube 3.7 and earlier allows remote authenticated users to obtain sensitive information (cleartext passwords) by reading the value in the sonar.sonarPassword parameter from jenkins/configure.
Published 2013-12-13 · Modified
4.01 PoCEPSS 0.050