CVE Published: 21/11/2019 |
CVE Updated: 05/08/2024 |
CVE Year: 2019 Source: jenkins |
Vendor: Jenkins project |
Product: Jenkins Google Compute Engine Plugin Status : PUBLISHED
CVE-2019-16546 Description
Jenkins Google Compute Engine Plugin 4.1.1 and earlier does not verify SSH host keys when connecting agents created by the plugin, enabling man-in-the-middle attacks.