Loading HuntDB...

GHSA-47rr-8vrp-9283

GitHub Security Advisory

Arbitrary file read vulnerability in Jenkins File System SCM Plugin

✓ GitHub Reviewed MODERATE Has CVE

Advisory Details

An arbitrary file read vulnerability in Jenkins File System SCM Plugin 2.1 and earlier allows attackers able to configure jobs in Jenkins to obtain the contents of any file on the Jenkins master.

Affected Packages

Maven hudson.plugins.filesystem_scm:filesystem_scm
Affected versions: 0 (last affected: 2.1)

Related CVEs

Key Information

GHSA ID
GHSA-47rr-8vrp-9283
Published
May 24, 2022 4:52 PM
Last Modified
January 30, 2024 9:23 PM
CVSS Score
5.0 /10
Primary Ecosystem
Maven
Primary Package
hudson.plugins.filesystem_scm:filesystem_scm
GitHub Reviewed
✓ Yes

Dataset

Last updated: August 27, 2025 6:31 AM

Data from GitHub Advisory Database. This information is provided for research and educational purposes.