Security Advisory
CVE-2018-1999047
CVE vulnerability detail — eXtreme Datacenter Security Operations
Description
A improper authorization vulnerability exists in Jenkins 2.137 and earlier, 2.121.2 and earlier in UpdateCenter.java that allows attackers to cancel a Jenkins restart scheduled through the update center.