Jenkins Missing Authorization Vulnerability - CVE-2021-21687 - Vulnerability Database

Jenkins Missing Authorization Vulnerability - CVE-2021-21687

Critical
Reference: CVE-2021-21687
Title: Jenkins Missing Authorization Vulnerability
Overview:

Jenkins 2.318 and earlier LTS 2.303.2 and earlier does not check agent-to-controller access to create symbolic links when unarchiving a symbolic link in FilePathuntar.