Security Advisory
CVE-2021-21605
CVE vulnerability detail — eXtreme Datacenter Security Operations
Description
Jenkins 2.274 and earlier, LTS 2.263.1 and earlier allows users with Agent/Configure permission to choose agent names that cause Jenkins to override the global `config.xml` file.