← Back to CVE List

CVE-2023-27903

Published: 2023-03-10T21:15Z
Last Modified: 2025-02-28T19:15Z
Source: MITRE CVE List
License: MITRE-CVE-TOS
Jenkins 2.393 and earlier, LTS 2.375.3 and earlier creates a temporary file in the default temporary directory with the default permissions for newly created files when uploading a file parameter through the CLI, potentially allowing attackers with access to the Jenkins controller file system to read and write the file before it is used. > MITRE Terms of Use apply – see LICENSE‑MITRE.txt