CVE-2018-1000110: Jenkins Git

Medium severity, CVSS 5.3. EPSS: 3.9% chance of exploitation in the next 30 days.

An improper authorization vulnerability exists in Jenkins Git Plugin version 3.7.0 and earlier in GitStatus.java that allows an attacker with network access to obtain a list of nodes and users.

Affected products

  • Jenkins Git: up to and including 3.7.0

Published 2018-03-13. Last modified 2026-06-17.