GHSA-pvjf-4hfg-wr84
GitHub Security Advisory
Incorrect control flow in Jenkins Gradle Plugin breaks credentials masking in the build log
✓ GitHub Reviewed
MODERATE
Has CVE
Advisory Details
Always-incorrect control flow implementation in Jenkins Gradle Plugin 2.8 may result in credentials not being masked (i.e., replaced with asterisks) in the build log in some circumstances.
Affected Packages
Maven
org.jenkins-ci.plugins:gradle
Affected versions:
0
(fixed in 2.8.1)
Related CVEs
Key Information
5.0
/10
Dataset
Last updated: August 24, 2025 6:28 AM
Data from GitHub Advisory Database. This information is provided for research and educational purposes.