Description
jenkins before versions 2.44, 2.32.2 is vulnerable to an improper blacklisting of the Pipeline metadata files in the agent-to-master security subsystem. This could allow metadata files to be written to by malicious agents (SECURITY-358).
Remediation
References
Related Vulnerabilities
Resin Application Server Permissions, Privileges, and Access Controls Vulnerability (CVE-2012-2969)
Oracle Database Server Other Vulnerability (CVE-2005-0701)
WordPress Plugin Zedna Contact form Directory Traversal (1.1)
WordPress Plugin ActiveCampaign-Forms, Site Tracking, Live Chat Unspecified Vulnerability (5.7)
MySQL Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2020-2922)