CVE-2019-10358: Jenkins Maven

Medium severity, CVSS 6.5. EPSS: 1% chance of exploitation in the next 30 days.

Jenkins Maven Integration Plugin 3.3 and earlier did not apply build log decorators to module builds, potentially revealing sensitive build variables in the build log.

Affected products

  • Jenkins Maven: up to and including 3.3

Published 2019-07-31. Last modified 2026-06-17.