Security Advisory
CVE-2016-4987
CVE vulnerability detail — eXtreme Datacenter Security Operations
Description
Directory traversal vulnerability in the Image Gallery plugin before 1.4 in Jenkins allows remote attackers to list arbitrary directories and read arbitrary files via unspecified form fields.