Is com.elasticbox.jenkins-ci.plugins:elasticboxsafe?
1 known vulnerability, worst severity LOW.
cvss
2.5
how bad it is if exploited, out of 10
epss
0.20%
chance of exploitation in the next 30 days
xyz score
1.1
CyberXYZ composite, out of 10
fig. 01 — GHSA-r9xc-54cq-99r7, the advisory selected below
// advisories
GHSA-r9xc-54cq-99r7
LOWCVE-2019-10450
Jenkins ElasticBox CI Plugin stores credentials unencrypted in the global config.xml configuration file on the Jenkins master where they can be viewed by users with access to the master file system.