Site icon API Security Blog

Jenkins Pipeline SCM API for Blue Ocean Plugin Unauthorized Access Vulnerability

The Blue Ocean Plugin is an aggregation tool designed for Jenkins Pipeline, and is of course compatible with free-style projects. It graphically illustrates the flow of the pipeline, making it more intuitive. Jenkins Pipeline SCM API for Blue Ocean Plugin 1.25.3 and prior versions are vulnerable to unauthorized access, and an attacker with certain privileges could exploit the vulnerability to obtain sensitive information.Read More

Exit mobile version