VYPR
Medium severity6.5NVD Advisory· Published Feb 15, 2022· Updated Jun 17, 2026

CVE-2022-25197

CVE-2022-25197

Description

Jenkins HashiCorp Vault Plugin 336.v182c0fbaaeb7 and earlier implements functionality that allows agent processes to read arbitrary files on the Jenkins controller file system.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected packages

Versions sourced from the GitHub Security Advisory.

PackageAffected versionsPatched versions
com.datapipe.jenkins.plugins:hashicorp-vault-pluginMaven
< 351.vdb_f83a_1c6a_9d351.vdb_f83a_1c6a_9d

Affected products

3

Patches

Vulnerability mechanics

References

5

News mentions

1