CVE-2020-2255

Missing Authorization in maven/io.jenkins.blueocean/blueocean

Identifiers

CVE-2020-2255

Package Slug

maven/io.jenkins.blueocean/blueocean

Vulnerability

Missing Authorization

Description

A missing permission check in Jenkins Blue Ocean Plugin allows attackers with Overall/Read permission to connect to an attacker-specified URL.

Affected Versions

All versions up to 1.23.2

Solution

Unfortunately, there is no solution available yet.

Last Modified

2020-09-21

source