CVE Database
/

CVE-2022-28146

Back to search

CVE-2022-28146

Published: Mar 29, 2022

Modified: Aug 3, 2024

PUBLISHED

Description

Jenkins Continuous Integration with Toad Edge Plugin 2.3 and earlier allows attackers with Item/Configure permission to read arbitrary files on the Jenkins controller by specifying an input folder on the Jenkins controller as a parameter to its build steps.

VendorProductVersions

Jenkins project

Jenkins Continuous Integration with Toad Edge Plugin

affected
unspecified - <= 2.3

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now