CVE-2022-34818

Publication date

2022-06-30 17:49:44

Family

jenkins

State

PUBLISHED

Description

Jenkins Failed Job Deactivator Plugin 1.2.1 and earlier does not perform permission checks in several views and HTTP endpoints, allowing attackers with Overall/Read permission to disable jobs.