Description
An arbitrary file read vulnerability in Jenkins File System SCM Plugin 2.1 and earlier allows attackers able to configure jobs in Jenkins to obtain the contents of any file on the Jenkins master.
Remediation
References
http://www.openwall.com/lists/oss-security/2019/08/07/1
https://jenkins.io/security/advisory/2019-08-07/#SECURITY-569
Related Vulnerabilities
CVE-2019-15608 Vulnerability in maven package org.webjars.npm:yarn
CVE-2019-17566 Vulnerability in maven package org.apache.xmlgraphics:batik-transcoder
CVE-2022-37616 Vulnerability in maven package org.webjars.npm:xmldom
CVE-2021-34081 Vulnerability in npm package gitsome
CVE-2021-39157 Vulnerability in npm package detect-character-encoding