Authentication mechanism absence or evasion In org.jenkins-ci.plugins:git
Description
Incorrect Authorization in Jenkins Git Plugin An improper authorization vulnerability exists in Jenkins Git Plugin version 3.7.0 and earlier in GitStatus.java that allows an attacker with network access to obtain a list of nodes and users.
Mitigation
Update Impact
Minimal update. May introduce new vulnerabilities or breaking changes.
Ecosystem | Package | Affected version | Patched versions |
|---|---|---|---|
maven | 3.8.0 |
Aliases
1. 2. 3. 4.
References
1. 2.