CVE-2023-27902

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
10/03/2023
Last modified:
28/02/2025

Description

Jenkins 2.393 and earlier, LTS 2.375.3 and earlier shows temporary directories related to job workspaces, which allows attackers with Item/Workspace permission to access their contents.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:jenkins:jenkins:*:*:*:*:lts:*:*:* 2.375.4 (excluding)
cpe:2.3:a:jenkins:jenkins:*:*:*:*:-:*:*:* 2.394 (excluding)