CVE-2025-24401
Jenkins Folder-based Authorization Strategy Plugin 217.vd5b_18537403e and earlier does not verify that permissions configured to be granted are enabled, potentially allowing users formerly granted (typically optional permissions, like Overall/Manage) to access functionality they're no longer entitled to.
Vendor
Product
CWE
Yayın Tarihi
2025-01-22 17:15:14
Güncelleme
2025-10-03 00:15:30
Source Identifier
jenkinsci-cert@googlegroups.com
KEV Date Added
-