CVE-2021-21661 is a vulnerability in Jenkins Kubernetes
Published on June 10, 2021
Jenkins Kubernetes CLI Plugin 1.10.0 and earlier does not perform permission checks in several HTTP endpoints, allowing attackers with Overall/Read permission to enumerate credentials IDs of credentials stored in Jenkins.
Products Associated with CVE-2021-21661
Want to know whenever a new CVE is published for Jenkins Kubernetes? stack.watch will email you.
Affected Versions
Jenkins project Jenkins Kubernetes CLI Plugin:- Version unspecified, <= 1.10.0 is affected.
Exploit Probability
EPSS
0.30%
Percentile
52.59%
EPSS (Exploit Prediction Scoring System) scores estimate the probability that a vulnerability will be exploited in the wild within the next 30 days. The percentile shows you how this score compares to all other vulnerabilities.