Common vulnerabilities and Exposures (CVE)

Skip to main content

Required CVE Record Information

Description

An improper authorization vulnerability exists in Jenkins Black Duck Hub Plugin 3.0.3 and older in PostBuildScanDescriptor.java that allows users with Overall/Read permission to read and write the Black Duck Hub plugin configuration.

Updated:

This container includes required additional information provided by the CVE Program for this vulnerability.