Jenkins Dependency Graph Viewer plugin 0.12 and previous versions did not perform permission checks for the API endpoint that modifies the dependency graph, allowing anyone with Overall/Read permission to modify this data.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
jenkins dependency graph viewer |