Cleartext Storage of Sensitive Information Affecting org.ukiuni.monitor-remote-job-plugin:monitor-remote-job package, versions [0,]


Severity

Recommended
0.0
medium
0
10

CVSS assessment made by Snyk's Security Team. Learn more

Threat Intelligence

EPSS
0.03% (7th percentile)

Do your applications use this vulnerable package?

In a few clicks we can analyze your entire application and see what components are vulnerable in your application, and suggest you quick fixes.

Test your applications

Snyk Learn

Learn about Cleartext Storage of Sensitive Information vulnerabilities in an interactive lesson.

Start learning
  • Snyk IDSNYK-JAVA-ORGUKIUNIMONITORREMOTEJOBPLUGIN-9689940
  • published14 Apr 2025
  • disclosed2 Apr 2025
  • creditZaoui Zakariae

Introduced: 2 Apr 2025

NewCVE-2025-31725  (opens in a new tab)
CWE-312  (opens in a new tab)

How to fix?

There is no fixed version for org.ukiuni.monitor-remote-job-plugin:monitor-remote-job.

Overview

org.ukiuni.monitor-remote-job-plugin:monitor-remote-job is a monitor remote job.

Affected versions of this package are vulnerable to Cleartext Storage of Sensitive Information within config.xml files. An attacker can gain unauthorized access to sensitive data by exploiting the visibility of these files to users with Extended Read permissions or direct access to the file system.

CVSS Base Scores

version 4.0
version 3.1