Jenkins before 1.502 allows remote authenticated users to configure an otherwise restricted project via vectors related to post-build actions.
| Package (Ecosystem) | Introduced | Fixed | Limit |
|---|---|---|---|
| org.jenkins-ci.main:jenkins-core(Maven) | 1.481 | 1.502 | N/A |
| org.jenkins-ci.main:jenkins-core(Maven) | 0 | 1.480.3 | N/A |
CVSS Metrics