CVE Vulnerabilities

CVE-2022-30947

Published: May 17, 2022 | Modified: Jan 09, 2024
CVSS 3.x
7.5
HIGH
Source:
NVD
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
CVSS 2.x
5 MEDIUM
AV:N/AC:L/Au:N/C:P/I:N/A:N
RedHat/V2
RedHat/V3
Ubuntu

Jenkins Git Plugin 4.11.1 and earlier allows attackers able to configure pipelines to check out some SCM repositories stored on the Jenkins controllers file system using local paths as SCM URLs, obtaining limited information about other projects SCM contents.

Affected Software

Name Vendor Start Version End Version
Git Jenkins * 4.11.2 (excluding)

References