Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
Github GHSA |
GHSA-p9hg-wrmv-v8cp | Jenkins LoadNinja Plugin does not mask LoadNinja API keys displayed on the job configuration form |
Tue, 24 Mar 2026 13:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | LoadNinja API Keys Unmasked in Jenkins LoadNinja Plugin |
Sat, 21 Mar 2026 05:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Jenkins
Jenkins loadninja |
|
| CPEs | cpe:2.3:a:jenkins:loadninja:*:*:*:*:*:jenkins:*:* | |
| Vendors & Products |
Jenkins
Jenkins loadninja |
Thu, 19 Mar 2026 15:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-200 | |
| Metrics |
cvssV3_1
|
Thu, 19 Mar 2026 09:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Jenkins Project
Jenkins Project jenkins Loadninja Plugin |
|
| Vendors & Products |
Jenkins Project
Jenkins Project jenkins Loadninja Plugin |
Wed, 18 Mar 2026 15:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Jenkins LoadNinja Plugin 2.1 and earlier does not mask LoadNinja API keys displayed on the job configuration form, increasing the potential for attackers to observe and capture them. | |
| References |
|
Status: PUBLISHED
Assigner: jenkins
Published:
Updated: 2026-03-19T14:49:13.430Z
Reserved: 2026-03-17T15:04:07.616Z
Link: CVE-2026-33004
Updated: 2026-03-19T14:49:05.645Z
Status : Analyzed
Published: 2026-03-18T16:16:28.457
Modified: 2026-03-21T00:17:45.933
Link: CVE-2026-33004
No data.
OpenCVE Enrichment
Updated: 2026-03-24T10:58:40Z
Github GHSA