CVE-2021-21640
07.04.2021, 14:15
Jenkins 2.286 and earlier, LTS 2.277.1 and earlier does not properly check that a newly created view has an allowed name, allowing attackers with View/Create permission to create views with invalid or already-used names.Enginsight
Vendor | Product | Version |
---|---|---|
jenkins | jenkins | 𝑥 ≤ 2.277.1 |
jenkins | jenkins | 𝑥 ≤ 2.286 |
𝑥
= Vulnerable software versions