Description
A data modification vulnerability exists in Jenkins Resource Disposer Plugin 0.11 and earlier in AsyncResourceDisposer.java that allows attackers to stop tracking a resource.
Remediation
References
https://jenkins.io/security/advisory/2018-07-30/#SECURITY-997
Related Vulnerabilities
CVE-2020-6506 Vulnerability in npm package react-native-webview
CVE-2021-20293 Vulnerability in maven package org.jboss.resteasy:resteasy-core
CVE-2020-26272 Vulnerability in npm package electron
CVE-2023-24429 Vulnerability in maven package org.jenkins-ci.plugins:semantic-versioning-plugin
CVE-2019-10277 Vulnerability in maven package hudson.plugins:starteam