LOW
An exposure of sensitive information vulnerability exists in Jenkins Reverse Proxy Auth Plugin 1.5 and older in ReverseProxySecurityRealm#authContext that allows attackers with local file system access to obtain a list of authorities for logged in users
Published Apr 5, 2018
3.3
LOWCVSS 3.0
EPSS 0.34%
Description
Affected products
Remediation
References (3)
Change history (0)
No recorded changes yet.