CVE-2017-1000388

Publication date

2018-01-26 02:00:00

Family

mitre

State

PUBLISHED

Description

Jenkins Dependency Graph Viewer plugin 0.12 and earlier did not perform permission checks for the API endpoint that modifies the dependency graph, allowing anyone with Overall/Read permission to modify this data.