Описание
Open redirect vulnerability in Jenkins OpenID Plugin
Jenkins OpenID Plugin 2.4 and earlier improperly determines that a redirect URL after login is legitimately pointing to Jenkins.
Пакеты
Наименование
org.jenkins-ci.plugins:openid
maven
Затронутые версииВерсия исправления
<= 2.4
Отсутствует
Связанные уязвимости
CVSS3: 6.1
nvd
около 3 лет назад
Jenkins OpenID Plugin 2.4 and earlier improperly determines that a redirect URL after login is legitimately pointing to Jenkins.