Jenkins LoadNinja Plugin 2.1 and earlier does not mask LoadNinja API keys displayed on the job configuration form, increasing the potential for attackers to observe and capture them.
Metrics
Affected Vendors & Products
References
History
Tue, 24 Mar 2026 13:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | LoadNinja API Keys Unmasked in Jenkins LoadNinja Plugin |
Sat, 21 Mar 2026 05:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Jenkins
Jenkins loadninja |
|
| CPEs | cpe:2.3:a:jenkins:loadninja:*:*:*:*:*:jenkins:*:* | |
| Vendors & Products |
Jenkins
Jenkins loadninja |
Thu, 19 Mar 2026 15:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-200 | |
| Metrics |
cvssV3_1
|
Thu, 19 Mar 2026 09:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Jenkins Project
Jenkins Project jenkins Loadninja Plugin |
|
| Vendors & Products |
Jenkins Project
Jenkins Project jenkins Loadninja Plugin |
Wed, 18 Mar 2026 15:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Jenkins LoadNinja Plugin 2.1 and earlier does not mask LoadNinja API keys displayed on the job configuration form, increasing the potential for attackers to observe and capture them. | |
| References |
|
Status: PUBLISHED
Assigner: jenkins
Published:
Updated: 2026-03-19T14:49:13.430Z
Reserved: 2026-03-17T15:04:07.616Z
Link: CVE-2026-33004
Updated: 2026-03-19T14:49:05.645Z
Status : Analyzed
Published: 2026-03-18T16:16:28.457
Modified: 2026-03-21T00:17:45.933
Link: CVE-2026-33004
No data.
OpenCVE Enrichment
Updated: 2026-03-24T10:58:40Z