CVE-2018-1000608: Insufficiently Protected Credentials
(updated )
A vulnerability exists in the Jenkins z/OS Connector Plugin. It allows an attacker with local file system access or control of a Jenkins administrator’s web browser to retrieve the configured password.
References
Detect and mitigate CVE-2018-1000608 with GitLab Dependency Scanning
Secure your software supply chain by verifying that all open source dependencies used in your projects contain no disclosed vulnerabilities. Learn more about Dependency Scanning →