VYPR
Medium severity5.3NVD Advisory· Published Feb 16, 2018· Updated Jun 17, 2026

CVE-2018-1000067

CVE-2018-1000067

Description

An improper authorization vulnerability exists in Jenkins versions 2.106 and earlier, and LTS 2.89.3 and earlier, that allows an attacker to have Jenkins submit HTTP GET requests and get limited information about the response.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected packages

Versions sourced from the GitHub Security Advisory.

PackageAffected versionsPatched versions
org.jenkins-ci.main:jenkins-coreMaven
< 2.89.42.89.4
org.jenkins-ci.main:jenkins-coreMaven
>= 2.90, < 2.1072.107

Affected products

1

Patches

Vulnerability mechanics

References

5

News mentions

0

No linked articles in our index yet.