-
CVSS Score
-Basic Information
CVE ID
-
GHSA ID
-
EPSS Score
-
CWE
-
Published
-
Updated
-
KEV Status
-
Technology
-
| Package Name | Ecosystem | Vulnerable Versions | First Patched Version |
|---|---|---|---|
| com.compuware.jenkins:compuware-topaz-utilities | maven | <= 1.0.8 | 1.0.9 |
The commit diff shows these two methods in JclDescriptorImpl.java received authorization checks in version 1.0.9. Prior versions lacked these checks, allowing unauthorized access to sensitive configuration data. These methods directly correspond to the vulnerability's description of credential ID and host/port enumeration endpoints.
Ongoing coverage of React2Shell