Versions of the BlazeMeter Jenkins plugin prior to 4.22 contain a flaw which results in credential enumeration