Common vulnerabilities and Exposures (CVE)

Skip to main content

Required CVE Record Information

Description

An exposure of sensitive information vulnerability exists in Jenkins Reverse Proxy Auth Plugin 1.5 and older in ReverseProxySecurityRealm#authContext that allows attackers with local file system access to obtain a list of authorities for logged in users.

Updated:

This container includes required additional information provided by the CVE Program for this vulnerability.