DescriptionMurray McAllister
2014-09-30 03:44:44 UTC
Jenkins Security Advisory SECURITY-127 notes:
"User with a permission limited to configuring a job can effectively create a new job."
Jenkins Security Advisory SECURITY-128 notes:
"User with a permission limited to configuring a job can effectively destroy other jobs through renaming"
Comment 1Murray McAllister
2014-10-02 02:41:20 UTC
Acknowledgements:
Red Hat would like to thank the Jenkins project for reporting these issues. Upstream acknowledges Daniel Beck as the original reporter.
Comment 2Murray McAllister
2014-10-02 02:48:43 UTC