← Back to CVE List

CVE-2020-2275

Published: 2020-09-16T14:15Z
Last Modified: 2024-11-21T05:25Z
Source: MITRE CVE List
License: MITRE-CVE-TOS
Jenkins Copy data to workspace Plugin 1.0 and earlier does not limit which directories can be copied from the Jenkins controller to job workspaces, allowing attackers with Job/Configure permission to read arbitrary files on the Jenkins controller. > MITRE Terms of Use apply – see LICENSE‑MITRE.txt