Description
Jenkins Kubernetes Plugin 1.27.3 and earlier allows low-privilege users to access possibly sensitive Jenkins controller environment variables.
Remediation
References
https://www.jenkins.io/security/advisory/2020-11-04/#SECURITY-1646
Related Vulnerabilities
CVE-2020-15250 Vulnerability in maven package junit:junit
CVE-2013-6373 Vulnerability in maven package org.jenkins-ci.plugins:exclusion
CVE-2023-47112 Vulnerability in maven package org.rundeck:rundeck
CVE-2023-50730 Vulnerability in maven package org.typelevel:grackle-core_native0.4_3
CVE-2017-4974 Vulnerability in maven package org.cloudfoundry.identity:cloudfoundry-identity-server