Lucene search

K
alpinelinuxAlpine Linux Development TeamALPINE:CVE-2021-21670
HistoryJun 30, 2021 - 5:15 p.m.

CVE-2021-21670

2021-06-3017:15:00
Alpine Linux Development Team
security.alpinelinux.org
19
jenkins
security
vulnerability
unauthorized users
cancel queue
abort builds

EPSS

0.001

Percentile

22.0%

Jenkins 2.299 and earlier, LTS 2.289.1 and earlier allows users to cancel queue items and abort builds of jobs for which they have Item/Cancel permission even when they do not have Item/Read permission.

OSVersionArchitecturePackageVersionFilename
Alpine3.14-communitynoarchjenkins= 2.297-r0UNKNOWN