Description
Jenkins Git Client Plugin 2.4.2 and earlier creates temporary file with insecure permissions resulting in information disclosure
Remediation
References
http://www.securityfocus.com/bid/101940
https://jenkins.io/security/advisory/2017-04-27/
Related Vulnerabilities
CVE-2023-37949 Vulnerability in maven package io.jenkins.plugins:macstadium-orka
CVE-2023-37899 Vulnerability in npm package @feathersjs/socketio
CVE-2020-6464 Vulnerability in maven package org.webjars.npm:electron
CVE-2022-37422 Vulnerability in maven package fish.payara.server.internal.web:web-core
CVE-2023-27296 Vulnerability in maven package org.apache.inlong:manager-pojo