CVE-2021-21670 PUBLISHED

Jenkins LTS 2.289.1 and earlier allows users to cancel queue items and abort builds of jobs for which they have Item/Cancel permission even when they do not have Item/Read permission.

EPSS 1.17% · 78.6th percentile

Risk Scores

EPSS Score
1.17%
78.6th percentile

Affected Products

VendorProductVersions
Bitnamijenkins0
Bitnamijenkins0

Timeline

References

Open in Interactive Console →