AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2022-36890

MEDIUM · CVSS 4.3 EPSS 1.10%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2022-07-27 · Last synced 2026-08-04

CyberRota Analysis

AI analysis pending.

CVE
CVE-2022-36890
Severity
MEDIUM
CVSS
4.3
EPSS
1.10%
Jenkins

Original NVD Description

Jenkins Deployer Framework Plugin 85.v1d1888e8c021 and earlier does not restrict the name of files in methods implementing form validation, allowing attackers with Item/Read permission to check for the existence of an attacker-specified file path on the Jenkins controller file system.