0.001 Low
EPSS
Percentile
22.0%
A exposure of sensitive information vulnerability exists in Jenkins 2.137 and earlier, 2.121.2 and earlier in Computer.java that allows attackers With Overall/Read permission to access the connection log for any agent.
bugzilla.redhat.com/show_bug.cgi?id=1620351
www.cve.org/CVERecord?id=CVE-2018-1999046 https://nvd.nist.gov/vuln/detail/CVE-2018-1999046 https://jenkins.io/security/advisory/2018-08-15/#SECURITY-1071