Description
Jenkins 2.218 and earlier, LTS 2.204.1 and earlier used a non-constant time comparison function when validating an HMAC.
Remediation
References
Related Vulnerabilities
Internet Information Services Other Vulnerability (CVE-2000-0167)
Oracle Database Server CVE-2008-1821 Vulnerability (CVE-2008-1821)
WordPress Plugin JSM file_get_contents() Shortcode Server-Side Request Forgery (2.7.0)
WordPress Plugin WP Mobile Menu-The Mobile-Friendly Responsive Menu Security Bypass (2.7.2)