cvedb.io
CVE-2016-3727
MEDIUM · CVSS 4.3
EPSS exploitation probability: 0%
Published 2016-05-17T14:08:11.717 · Last modified 2026-06-17T00:46:16.127

Summary

The API URL computer/(master)/api/xml in Jenkins before 2.3 and LTS before 1.651.2 allows remote authenticated users with extended read permission for the master node to obtain sensitive information about the global configuration via unspecified vectors.

Affected products

jenkins — jenkins

Does this affect you?

Add your gear to cvedb and we'll alert you only when jenkins ships something exploited.

Check my exposure →

References

This product uses data from the NVD API but is not endorsed or certified by the NVD. Informational only; not professional security advice.