Executive brief
Jenkins Black Duck Hub Plugin allowed any user with Overall/Read to read and write its configuration
Affected products
- Maven com.blackducksoftware.integration:blackduck-hub
Junglewise Threat Intelligence
CVE-2018-1000197 · Severity: low · CVSS 3 · Published 2022-05-13
Technologies: com.blackducksoftware.integration:blackduck-hub (Maven). Vendors: Maven.
Jenkins Black Duck Hub Plugin allowed any user with Overall/Read to read and write its configuration