CVE-2020-2146
Jenkins Mac Plugin 1.1.0 and earlier does not validate SSH host keys when connecting agents created by the plugin, enabling man-in-the-middle attacks.
Date published : 2020-03-09
https://jenkins.io/security/advisory/2020-03-09/#SECURITY-1692
