← Back

CVE-2022-46685

nvd nist
Published: Dec 12, 2022Modified: Apr 23, 2025

JSON object

Loading...
4.3
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N
Exploitability: 2.8 / Impact: 1.4
Source: NVD

Description

In Jenkins Gitea Plugin 1.4.4 and earlier, the implementation of Gitea personal access tokens did not support credentials masking, potentially exposing them through the build log.

Affected (1)

Products: Gitea: Gitea
1 product
Gitea
Configuration A
1 vulnerable
Vulnerable SoftwareAffected Versions
Before 1.4.5

References (2)

Source: jenkinsci-cert@googlegroups.com
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory

Timeline

No history available yet.