Description
Jenkins 2.314 and earlier, LTS 2.303.1 and earlier accepts names of jobs and other entities with a trailing dot character, potentially replacing the configuration and data of other entities on Windows.
Remediation
References
Related Vulnerabilities
MySQL CVE-2019-2693 Vulnerability (CVE-2019-2693)
WordPress Plugin S3 Video Cross-Site Scripting (0.983)
SharePoint CVE-2024-26251 Vulnerability (CVE-2024-26251)
PHP Cryptographic Issues Vulnerability (CVE-2015-8867)
WordPress Plugin Advanced Custom Fields PRO Multiple Security Bypass Vulnerabilities (5.10)