Description
Agent processes are able to completely bypass file path filtering by wrapping the file operation in an agent file path in Jenkins 2.318 and earlier, LTS 2.303.2 and earlier.
Remediation
References
Related Vulnerabilities
SharePoint Other Vulnerability (CVE-2014-6357)
MySQL CVE-2024-21165 Vulnerability (CVE-2024-21165)
WordPress Plugin Wordpress Forms Multiple Vulnerabilities (0.2.7.1)
MediaWiki CVE-2022-34912 Vulnerability (CVE-2022-34912)
WordPress Plugin Top 10-Popular posts for WordPress Cross-Site Request Forgery (1.9.2)