Описание
Jenkins before 1.638 and LTS before 1.625.2 allow remote attackers to obtain sensitive information via a direct request to queue/api.
Пакеты
| Пакет | Статус | Версия исправления | Релиз | Тип |
|---|---|---|---|---|
| jenkins | removed | package |
Примечания
https://wiki.jenkins-ci.org/display/SECURITY/Jenkins+Security+Advisory+2015-11-11
EPSS
Процентиль: 51%
0.00284
Низкий
Связанные уязвимости
ubuntu
около 10 лет назад
Jenkins before 1.638 and LTS before 1.625.2 allow remote attackers to obtain sensitive information via a direct request to queue/api.
redhat
около 10 лет назад
Jenkins before 1.638 and LTS before 1.625.2 allow remote attackers to obtain sensitive information via a direct request to queue/api.
nvd
около 10 лет назад
Jenkins before 1.638 and LTS before 1.625.2 allow remote attackers to obtain sensitive information via a direct request to queue/api.
github
больше 3 лет назад
Jenkins allows Unauthorized Viewing of Queue API Information
EPSS
Процентиль: 51%
0.00284
Низкий