CVE-2025-58459
03.09.2025, 15:15
Jenkins global-build-stats Plugin 322.v22f4db_18e2dd and earlier does not perform permission checks in its REST API endpoints, allowing attackers with Overall/Read permission to enumerate graph IDs.Enginsight
Vendor | Product | Version |
---|---|---|
jenkins | global_build_stats | 𝑥 ≤ 322.v22f4db_18e2dd |
𝑥
= Vulnerable software versions
Common Weakness Enumeration