CyberRota Analysis
This is a low severity vulnerability with a CVSS score of 3.3. It affects Jenkins.
CVE
CVE-2018-1000150
Severity
LOW
CVSS
3.3
EPSS
0.35%
Jenkins
Original NVD Description
An exposure of sensitive information vulnerability exists in Jenkins Reverse Proxy Auth Plugin 1.5 and older in ReverseProxySecurityRealm#authContext that allows attackers with local file system access to obtain a list of authorities for logged in users.
Related CVEs
Other vulnerabilities affecting the same vendor(s)