Количество 3
Количество 3
CVE-2023-35149
A missing permission check in Jenkins Digital.ai App Management Publisher Plugin 2.6 and earlier allows attackers with Overall/Read permission to connect to an attacker-specified URL, capturing credentials stored in Jenkins.
CVE-2023-35149
A missing permission check in Jenkins Digital.ai App Management Publisher Plugin 2.6 and earlier allows attackers with Overall/Read permission to connect to an attacker-specified URL, capturing credentials stored in Jenkins.
GHSA-5ghv-wxh9-7356
Jenkins Digital.ai App Management Publisher Plugin missing permission checks
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2023-35149 A missing permission check in Jenkins Digital.ai App Management Publisher Plugin 2.6 and earlier allows attackers with Overall/Read permission to connect to an attacker-specified URL, capturing credentials stored in Jenkins. | CVSS3: 4.2 | 0% Низкий | больше 2 лет назад | |
CVE-2023-35149 A missing permission check in Jenkins Digital.ai App Management Publisher Plugin 2.6 and earlier allows attackers with Overall/Read permission to connect to an attacker-specified URL, capturing credentials stored in Jenkins. | CVSS3: 6.5 | 0% Низкий | больше 2 лет назад | |
GHSA-5ghv-wxh9-7356 Jenkins Digital.ai App Management Publisher Plugin missing permission checks | CVSS3: 4.2 | 0% Низкий | больше 2 лет назад |
Уязвимостей на страницу