Description
Jenkins Git Client Plugin 2.4.2 and earlier creates temporary file with insecure permissions resulting in information disclosure
Remediation
References
http://www.securityfocus.com/bid/101940
https://jenkins.io/security/advisory/2017-04-27/
Related Vulnerabilities
CVE-2017-12645 Vulnerability in maven package com.liferay.portal:com.liferay.portal.impl
CVE-2018-20698 Vulnerability in maven package com.floragunn:search-guard-kibana-plugin
CVE-2023-37478 Vulnerability in npm package @pnpm/linux-arm64
CVE-2017-13098 Vulnerability in maven package org.bouncycastle:bctls-jdk15on