Beveiligingsadvies

CVE-2025-24401

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2025-01-22 17:02:54
Laatst bijgewerkt 2025-01-23 16:07:38
Toegewezen door jenkins
CVSS-score 6.8
Status PUBLISHED

Beschrijving

Jenkins Folder-based Authorization Strategy Plugin 217.vd5b_18537403e and earlier does not verify that permissions configured to be granted are enabled, potentially allowing users formerly granted (typically optional permissions, like Overall/Manage) to access functionality they're no longer entitled to.