Back

HIGH KEV

jenkins: Project name disclosure via fingerprints (SECURITY-153)

Published Nov 25, 2015 ·Due Jun 2, 2023

Description

The Fingerprints pages in Jenkins before 1.638 and LTS before 1.625.2 might allow remote attackers to obtain sensitive job and build name information via a direct request.

Affected products

Remediation

No remediation recorded yet.

Metrics

References (11)

Change history (0)

No recorded changes yet.

Sources
CVE.org / MITRE
Status PUBLISHED
Assigner redhat
Published Nov 25, 2015
Updated Oct 21, 2025
Reserved Jul 1, 2015
CISA Vulnrichment
Updated Feb 7, 2025
NVD
Status Analyzed
Modified Jun 17, 2026
Red Hat
Severity Low
Public date Nov 11, 2015
GHSA-8PQX-3RXX-F5PM