Security Advisory

CVE-2023-30526

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2023-04-12 17:05:14
Last updated 2025-02-07 16:54:29
Assigner jenkins
State PUBLISHED

Description

A missing permission check in Jenkins Report Portal Plugin 0.5 and earlier allows attackers with Overall/Read permission to connect to an attacker-specified URL using attacker-specified bearer token authentication.