4
CVSSv2

CVE-2019-10344

Published: 31/07/2019 Updated: 25/10/2023
CVSS v2 Base Score: 4 | Impact Score: 2.9 | Exploitability Score: 8
CVSS v3 Base Score: 4.3 | Impact Score: 1.4 | Exploitability Score: 2.8
VMScore: 356
Vector: AV:N/AC:L/Au:S/C:P/I:N/A:N

Vulnerability Summary

Missing permission checks in Jenkins Configuration as Code Plugin 1.24 and previous versions in various HTTP endpoints allowed users with Overall/Read access to access the generated schema and documentation for this plugin containing detailed information about installed plugins.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

jenkins configuration as code