Логотип exploitDog
bind:CVE-2025-24401
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2025-24401

Количество 2

Количество 2

nvd логотип

CVE-2025-24401

около 1 года назад

Jenkins Folder-based Authorization Strategy Plugin 217.vd5b_18537403e and earlier does not verify that permissions configured to be granted are enabled, potentially allowing users formerly granted (typically optional permissions, like Overall/Manage) to access functionality they're no longer entitled to.

CVSS3: 6.8
EPSS: Низкий
github логотип

GHSA-969g-rq57-c79h

около 1 года назад

Disabled permissions can be granted by Folder-based in Jenkins Authorization Strategy Plugin

CVSS3: 6.8
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2025-24401

Jenkins Folder-based Authorization Strategy Plugin 217.vd5b_18537403e and earlier does not verify that permissions configured to be granted are enabled, potentially allowing users formerly granted (typically optional permissions, like Overall/Manage) to access functionality they're no longer entitled to.

CVSS3: 6.8
0%
Низкий
около 1 года назад
github логотип
GHSA-969g-rq57-c79h

Disabled permissions can be granted by Folder-based in Jenkins Authorization Strategy Plugin

CVSS3: 6.8
0%
Низкий
около 1 года назад

Уязвимостей на страницу