Jenkins Job Import Plugin is vulnerable to unauthorized data modification. An attacker is able to copy jobs from another preconfigured Jenkins instance to install additional plugins and load the imported job’s configurations.
CPE | Name | Operator | Version |
---|---|---|---|
job import plugin | eq | 1.0-h-1 |