Количество 2
Количество 2
CVE-2021-21621
Jenkins Support Core Plugin 2.72 and earlier provides the serialized user authentication as part of the "About user (basic authentication details only)" information, which can include the session ID of the user creating the support bundle in some configurations.
GHSA-92pg-8g57-hqpx
Support bundles can include user session IDs in Jenkins Support Core Plugin
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2021-21621 Jenkins Support Core Plugin 2.72 and earlier provides the serialized user authentication as part of the "About user (basic authentication details only)" information, which can include the session ID of the user creating the support bundle in some configurations. | CVSS3: 5.3 | 0% Низкий | почти 5 лет назад | |
GHSA-92pg-8g57-hqpx Support bundles can include user session IDs in Jenkins Support Core Plugin | CVSS3: 3.1 | 0% Низкий | больше 3 лет назад |
Уязвимостей на страницу