Lucene search

K
osvGoogleOSV:GHSA-R78Q-QGX6-64PP
HistoryMay 24, 2022 - 5:07 p.m.

Memory usage graphs accessible to anyone with Overall/Read

2022-05-2417:07:40
Google
osv.dev
7
memory usage
jenkins controller
access control

EPSS

0.002

Percentile

55.1%

Jenkins includes a feature that shows a JVM memory usage chart for the Jenkins controller.

Access to the chart in Jenkins 2.218 and earlier, LTS 2.204.1 and earlier requires no permissions beyond the general Overall/Read, allowing users who are not administrators to view JVM memory usage data.

Jenkins 2.219, LTS 2.204.2 now requires Overall/Administer permissions to view the JVM memory usage chart.

EPSS

0.002

Percentile

55.1%