Description
A data modification vulnerability exists in Jenkins Resource Disposer Plugin 0.11 and earlier in AsyncResourceDisposer.java that allows attackers to stop tracking a resource.
Remediation
References
https://jenkins.io/security/advisory/2018-07-30/#SECURITY-997
Related Vulnerabilities
CVE-2015-8797 Vulnerability in maven package org.apache.solr:solr
CVE-2015-0254 Vulnerability in maven package org.apache.taglibs:taglibs-standard
CVE-2021-46365 Vulnerability in maven package info.magnolia:magnolia-core
CVE-2023-43498 Vulnerability in maven package org.jenkins-ci.main:jenkins-core
CVE-2022-41231 Vulnerability in maven package org.jenkins-ci.plugins:build-publisher