Description
A denial of service vulnerability exists in Jenkins 2.137 and earlier, 2.121.2 and earlier in CronTab.java that allows attackers with Overall/Read permission to have a request handling thread enter an infinite loop.
Remediation
References
https://jenkins.io/security/advisory/2018-08-15/#SECURITY-790
Related Vulnerabilities
CVE-2014-4611 Vulnerability in maven package net.jpountz.lz4:lz4
CVE-2021-23901 Vulnerability in maven package org.apache.nutch:nutch
CVE-2020-2095 Vulnerability in maven package org.jenkins-ci.plugins:redgate-sql-ci
CVE-2022-28154 Vulnerability in maven package org.jenkins-ci.plugins:covcomplplot
CVE-2019-16562 Vulnerability in maven package org.jenkins-ci.plugins:buildgraph-view