Description
When creating temporary files, agent-to-controller access to create those files is only checked after they've been created in Jenkins 2.318 and earlier, LTS 2.303.2 and earlier.
Remediation
References
Related Vulnerabilities
Oracle JRE CVE-2012-5072 Vulnerability (CVE-2012-5072)
Joomla Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2017-7983)
WordPress Plugin Stop User Enumeration Security Bypass (1.3.18)
WordPress Plugin WordPress Contact Forms by Cimatti Cross-Site Scripting (1.4.11)
WordPress Plugin Publish to Schedule Cross-Site Scripting (4.5.4)