CVE-2021-21631
EUVD-2022-585930.03.2021, 12:16
Jenkins Cloud Statistics Plugin 0.26 and earlier does not perform a permission check in an HTTP endpoint, allowing attackers with Overall/Read permission and knowledge of random activity IDs to view related provisioning exception error messages.Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| jenkins | cloud_statistics | 𝑥 ≤ 0.26 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration