Jenkins LoadNinja Plugin 2.1 and earlier does not mask LoadNinja API keys displayed on the job configuration form, increasing the potential for attackers to observe and capture them.
Metrics
Affected Vendors & Products
References
History
Sat, 21 Mar 2026 05:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Jenkins
Jenkins loadninja |
|
| CPEs | cpe:2.3:a:jenkins:loadninja:*:*:*:*:*:jenkins:*:* | |
| Vendors & Products |
Jenkins
Jenkins loadninja |
Thu, 19 Mar 2026 15:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-200 | |
| Metrics |
cvssV3_1
|
Thu, 19 Mar 2026 09:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Jenkins Project
Jenkins Project jenkins Loadninja Plugin |
|
| Vendors & Products |
Jenkins Project
Jenkins Project jenkins Loadninja Plugin |
Wed, 18 Mar 2026 15:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Jenkins LoadNinja Plugin 2.1 and earlier does not mask LoadNinja API keys displayed on the job configuration form, increasing the potential for attackers to observe and capture them. | |
| References |
|
Status: PUBLISHED
Assigner: jenkins
Published: 2026-03-18T15:15:26.527Z
Updated: 2026-03-19T14:49:13.430Z
Reserved: 2026-03-17T15:04:07.616Z
Link: CVE-2026-33004
Updated: 2026-03-19T14:49:05.645Z
Status : Analyzed
Published: 2026-03-18T16:16:28.457
Modified: 2026-03-21T00:17:45.933
Link: CVE-2026-33004
No data.
ReportizFlow