CVE-2013-6372: Jenkins-Ci Subversion-Plugin
Low severity, CVSS 2.1. EPSS: 0.5% chance of exploitation in the next 30 days.
The Subversion plugin before 1.54 for Jenkins stores credentials using base64 encoding, which allows local users to obtain passwords and SSH private keys by reading a subversion.credentials file.
Affected products
- Jenkins-Ci Subversion-Plugin: up to and including 1.53; version 1.0 only; version 1.1 only; version 1.2 only; version 1.3 only; version 1.4 only; …
Published 2014-05-08. Last modified 2026-06-17.