CVE

Id
79091  
CVE No.
CVE-2015-1814  
Status
Candidate  
Description
The API token-issuing service in Jenkins before 1.606 and LTS before 1.596.2 allows remote attackers to gain privileges via a "forced API token change" involving anonymous users.  
Phase
Assigned (20150217)  
Votes
None (candidate not yet proposed)  
Comments