Moderate severityNVD Advisory· Published Mar 13, 2018· Updated Sep 16, 2024
CVE-2018-1000114
CVE-2018-1000114
Description
An improper authorization vulnerability exists in Jenkins Promoted Builds Plugin 2.31.1 and earlier in Status.java and ManualCondition.java that allow an attacker with read access to jobs to perform promotions.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected packages
Versions sourced from the GitHub Security Advisory.
| Package | Affected versions | Patched versions |
|---|---|---|
org.jenkins-ci.plugins:promoted-buildsMaven | < 3.0 | 3.0 |
Affected products
1Patches
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
3- github.com/advisories/GHSA-9rx5-w522-5fh7ghsaADVISORY
- nvd.nist.gov/vuln/detail/CVE-2018-1000114ghsaADVISORY
- jenkins.io/security/advisory/2018-02-26/ghsax_refsource_CONFIRMWEB
News mentions
0No linked articles in our index yet.