- CVE ID
- CVE-2020-2251
- CVE Description
- Jenkins SoapUI Pro Functional Testing Plugin 1.5 and earlier transmits project passwords in its configuration in plain text as part of job configuration forms, potentially resulting in their exposure.
- Published
- Feb 3, 2026
- CVSS Score & Severity
4.3Medium
- CVSS Vector
- CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N
- EPSS Score
- 0.042%
- KEV Status
Not in KEV Catalog: No known exploits
- Vulnerable Methods
com/smartbear/ready/jenkins/JenkinsSoapUIProTestRunner.getProjectPassword()Ljava/lang/String;JVM
- Source
- National Vulnerability Database