CVE-2019-10397: Jenkins Aqua Security Severless Scanner

Low severity, CVSS 3.1. EPSS: 0.6% chance of exploitation in the next 30 days.

Jenkins Aqua Security Serverless Scanner Plugin 1.0.4 and earlier transmitted configured passwords in plain text as part of job configuration forms, potentially resulting in their exposure.

Affected products

  • Jenkins Aqua Security Severless Scanner: up to and including 1.0.4

Published 2019-09-12. Last modified 2026-06-17.