Security Advisory
CVE-2017-2599
CVE vulnerability detail — eXtreme Datacenter Security Operations
Description
Jenkins before versions 2.44 and 2.32.2 is vulnerable to an insufficient permission check. This allows users with permissions to create new items (e.g. jobs) to overwrite existing items they dont have access to (SECURITY-321).