An incorrect permission check in Jenkins Role-based Authorization Strategy Plugin 3.1 and earlier allows attackers with Item/Read permission on nested items to access them, even if they lack Item/Read permission for parent folders.
Metrics
Affected Vendors & Products
Advisories
Source | ID | Title |
---|---|---|
![]() |
EUVD-2022-5195 | An incorrect permission check in Jenkins Role-based Authorization Strategy Plugin 3.1 and earlier allows attackers with Item/Read permission on nested items to access them, even if they lack Item/Read permission for parent folders. |
![]() |
GHSA-rm4m-39fj-288c | Incorrect permission checks in Jenkins Role-based Authorization Strategy Plugin may allow accessing some items |
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
No history.

Status: PUBLISHED
Assigner: jenkins
Published:
Updated: 2024-08-03T18:16:23.661Z
Reserved: 2021-01-04T00:00:00
Link: CVE-2021-21624

No data.

Status : Modified
Published: 2021-03-18T14:15:13.350
Modified: 2024-11-21T05:48:43.177
Link: CVE-2021-21624

No data.

No data.