Jenkins Convertigo Mobile Platform Plugin 1.1 and earlier uses static fields to store job configuration information, allowing attackers with Item/Configure permission to capture passwords of the jobs that will be configured.
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2022-25210.json"
[ { "events": [ { "introduced": "0" }, { "last_affected": "1.1" } ] } ]