Launch Week Day 1: Announcing Security Design Review
MEDIUM 5.3 Maven

Incorrect Authorization in Jenkins Mercurial Plugin

GHSA-f9cx-789c-w2mr · CVE-2018-1000112

Published · Modified

Description

An improper authorization vulnerability exists in Jenkins Mercurial Plugin version 2.2 and earlier in MercurialStatus.java that allows an attacker with network access to obtain a list of nodes and users.

Ready to move

Start Securing

Free, no credit card | First findings in minutes