An improper authorization vulnerability exists in Jenkins versions 2.106 and earlier, and LTS 2.89.3 and earlier, that allows an attacker to have Jenkins submit HTTP GET requests and get limited information about the response.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published: 2018-02-16T00:00:00

Updated: 2024-08-05T12:33:48.970Z

Reserved: 2018-02-15T00:00:00

Link: CVE-2018-1000067

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Analyzed

Published: 2018-02-16T00:29:01.213

Modified: 2022-06-13T19:09:53.523

Link: CVE-2018-1000067

cve-icon Redhat

Severity : Moderate

Publid Date: 2018-02-14T00:00:00Z

Links: CVE-2018-1000067 - Bugzilla