Jenkins Audit Trail Plugin 3.6 and previous versions applies pattern matching to a different representation of request URL paths than the Stapler web framework uses for dispatching requests, which allows malicious users to craft URLs that bypass request logging of any target URL.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
jenkins audit trail |