Description
Jenkins Git Client Plugin 2.4.2 and earlier creates temporary file with insecure permissions resulting in information disclosure
Remediation
References
http://www.securityfocus.com/bid/101940
https://jenkins.io/security/advisory/2017-04-27/
Related Vulnerabilities
CVE-2022-34784 Vulnerability in maven package org.jenkins-ci.plugins:build-metrics
CVE-2018-1000609 Vulnerability in maven package io.jenkins:configuration-as-code
CVE-2023-24432 Vulnerability in maven package io.jenkins.plugins:macstadium-orka
CVE-2017-7669 Vulnerability in maven package org.apache.hadoop:hadoop-common
CVE-2019-20174 Vulnerability in maven package org.webjars.bower:auth0-lock