Jenkins allows Remote Users to Build Arbitrary Jobs
Moderate severity
GitHub Reviewed
Published
May 5, 2022
to the GitHub Advisory Database
•
Updated Mar 13, 2025
Package
Affected versions
>= 1.481, < 1.502
< 1.480.3
Patched versions
1.502
1.480.3
Description
Published by the National Vulnerability Database
Mar 19, 2013
Published to the GitHub Advisory Database
May 5, 2022
Reviewed
Mar 13, 2025
Last updated
Mar 13, 2025
Unspecified vulnerability in Jenkins before 1.502 and LTS before 1.480.3 allows remote authenticated users with write access to build arbitrary jobs via unknown attack vectors.
References