CVE-2021-21621
Summary
| CVE | CVE-2021-21621 |
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2021-02-24 16:15:00 UTC |
| Updated | 2023-10-25 18:16:00 UTC |
| Description | Jenkins Support Core Plugin 2.72 and earlier provides the serialized user authentication as part of the "About user (basic authentication details only)" information, which can include the session ID of the user creating the support bundle in some configurations. |
NVD Known Affected Configurations (CPE 2.3)
References
| Reference | Source | Link | Tags |
|---|
| Jenkins Security Advisory 2021-02-24 |
CONFIRM |
www.jenkins.io |
Vendor Advisory |
| CVE Program record |
CVE.ORG |
www.cve.org |
canonical |
| NVD vulnerability detail |
NVD |
nvd.nist.gov |
canonical, analysis |
No vendor comments have been submitted for this CVE.
Legacy QID Mappings
- 375437 Jenkins Plugins Multiple Security Vulnerabilities(Jenkins Security Advisory 2021-02-24)