CVE-2019-10354

Publication date

2019-07-17 15:45:13

Family

jenkins

State

PUBLISHED

Description

A vulnerability in the Stapler web framework used in Jenkins 2.185 and earlier, LTS 2.176.1 and earlier allowed attackers to access view fragments directly, bypassing permission checks and possibly obtain sensitive information.