CVE-2019-10354
17.07.2019, 16:15
A vulnerability in the Stapler web framework used in Jenkins 2.185 and earlier, LTS 2.176.1 and earlier allowed attackers to access view fragments directly, bypassing permission checks and possibly obtain sensitive information.Enginsight
Vendor | Product | Version |
---|---|---|
jenkins | jenkins | 𝑥 ≤ 2.176.1 |
jenkins | jenkins | 𝑥 ≤ 2.185 |
redhat | openshift_container_platform | 3.11 |
redhat | openshift_container_platform | 4.1 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
References