Description
An arbitrary file read vulnerability in Jenkins Google OAuth Credentials Plugin 0.9 and earlier allowed attackers able to configure jobs and credentials in Jenkins to obtain the contents of any file on the Jenkins master.
Remediation
References
https://jenkins.io/security/advisory/2019-10-16/#SECURITY-1583
Related Vulnerabilities
CVE-2022-45935 Vulnerability in maven package org.apache.james:james-server-protocols-imap4
CVE-2011-3190 Vulnerability in maven package org.apache.tomcat:tomcat-coyote
CVE-2023-26476 Vulnerability in maven package org.xwiki.platform:xwiki-platform-wiki-ui-mainwiki
CVE-2023-43123 Vulnerability in maven package org.apache.storm:storm-server
CVE-2013-2135 Vulnerability in maven package com.opensymphony:xwork-core