Uploaded image for project: 'Jenkins'
  1. Jenkins
  2. JENKINS-70385

Username and Password in plain text

XMLWordPrintable

    • Icon: Bug Bug
    • Resolution: Not A Defect
    • Icon: Critical Critical
    • core
    • None
    • 2.360

      While login through Jenkins, the application layer password encryption is not in place, resulting the vulnerabilities of password disclosure.
      Even if, the SSL is in place, SSL will encrypt the password after proxy only, hence allowing users at proxy to intercept communication and disclose password.

      Please provide a solution for the same.

            danielbeck Daniel Beck
            erankur Ankur
            Votes:
            0 Vote for this issue
            Watchers:
            3 Start watching this issue

              Created:
              Updated:
              Resolved: