Jenkins Plugin Vulnerabilities: CSRF, Arbitrary File Read, Session Fixation (CVE-2018-1000600/601/602)
Security AdvisorySA-CORE-2018-001MediumJenkins
Affected:
- GitHub Plugin <= 1.29.2
- ssh-credentials Plugin <= 1.14
- saml Plugin <= 1.0.7
- AWS CodeBuild Plugin <= 0.26
- AWS CodeDeploy Plugin <= 1.19
Fixed in:
- GitHub Plugin >= 1.29.2
- SSH Credentials Plugin >= 1.14
- SAML Plugin >= 1.0.7
Referenced CVEs: CVE-2018-1000610
文章内图片已隐藏以节省流量 · Upgrade to Pro to view images & offline archive
This content was auto-fetched from jenkins.io, cleaned by our LLM pipeline, and translated to English. View original.