CVE-2020-2320
9.8CRITICALJenkins Plugin Installation Manager Tool 2.1.3 and earlier does not verify plugin downloads.
Published: 12/3/2020Updated: 11/21/2024
Description
Jenkins Plugin Installation Manager Tool 2.1.3 and earlier does not verify plugin downloads.
AI AnalysisPowered by AI
Affected Products
jenkinsinstallation_manager_tool
References
- http://www.openwall.com/lists/oss-security/2020/12/03/2Third Party Advisory
- https://www.jenkins.io/security/advisory/2020-12-03/#SECURITY-1856Vendor Advisory
- http://www.openwall.com/lists/oss-security/2020/12/03/2Third Party Advisory
- https://www.jenkins.io/security/advisory/2020-12-03/#SECURITY-1856Vendor Advisory