Jenkins 2.299 and earlier, LTS 2.289.1 and earlier allows users to cancel queue items and abort builds of jobs for which they have Item/Cancel permission even when they do not have Item/Read permission.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Jenkins | Jenkins | * | 2.289.2 (excluding) |
Jenkins | Jenkins | * | 2.300 (excluding) |
Red Hat OpenShift Container Platform 4.6 | RedHat | jenkins-0:2.289.2.1629437819-1.el8 | * |
Red Hat OpenShift Container Platform 4.7 | RedHat | jenkins-0:2.289.2.1628252553-1.el8 | * |
Red Hat OpenShift Container Platform 4.8 | RedHat | jenkins-0:2.289.3.1633554819-1.el8 | * |