An arbitrary file read vulnerability in Jenkins Google OAuth Credentials Plugin 0.9 and earlier allowed attackers able to configure jobs and credentials in Jenkins to obtain the contents of any file on the Jenkins master.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: jenkins

Published: 2019-10-16T13:00:44

Updated: 2024-08-04T22:24:18.704Z

Reserved: 2019-03-29T00:00:00

Link: CVE-2019-10436

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2019-10-16T14:15:11.277

Modified: 2023-10-25T18:16:23.333

Link: CVE-2019-10436

cve-icon Redhat

No data.