Description
In jenkins before versions 2.44, 2.32.2 node monitor data could be viewed by low privilege users via the remote API. These included system configuration and runtime information of these nodes (SECURITY-343).
Remediation
References
Related Vulnerabilities
WordPress Plugin JSM file_get_contents() Shortcode Server-Side Request Forgery (2.7.0)
MediaWiki Incorrect Permission Assignment for Critical Resource Vulnerability (CVE-2020-35625)
Oracle Database Server CVE-2006-0259 Vulnerability (CVE-2006-0259)
CubeCart Improper Access Control Vulnerability (CVE-2015-6928)