CVE-2021-21683 log

Source
Severity Medium
Remote Yes
Type Directory traversal
Description
The file browser in Jenkins 2.314 and earlier may interpret some paths to files as absolute on Windows, resulting in a path traversal vulnerability allowing attackers with Overall/Read permission (Windows controller) or Job/Workspace permission (Windows agents) to obtain the contents of arbitrary files.
Group Package Affected Fixed Severity Status Ticket
AVG-2449 jenkins 2.314-1 Medium Not affected
References
https://www.jenkins.io/security/advisory/2021-10-06/#SECURITY-2481