Jenkins Missing Authorization Vulnerability - CVE-2021-21687
Jenkins 2.318 and earlier LTS 2.303.2 and earlier does not check agent-to-controller access to create symbolic links when unarchiving a symbolic link in FilePathuntar.
Jenkins 2.318 and earlier LTS 2.303.2 and earlier does not check agent-to-controller access to create symbolic links when unarchiving a symbolic link in FilePathuntar.