Jenkins Missing Authorization Vulnerability - CVE-2021-21694 - Vulnerability Database

Jenkins Missing Authorization Vulnerability - CVE-2021-21694

Critical
Reference: CVE-2021-21694
Title: Jenkins Missing Authorization Vulnerability
Overview:

FilePathtoURI FilePathhasSymlink FilePathabsolutize FilePathisDescendant and FilePathgetDiskSpace do not check any permissions in Jenkins 2.318 and earlier LTS 2.303.2 and earlier.