Количество 2
Количество 2
CVE-2023-32996
больше 2 лет назад
A missing permission check in Jenkins SAML Single Sign On(SSO) Plugin 2.0.0 and earlier allows attackers with Overall/Read permission to send an HTTP POST request with JSON body containing attacker-specified content, to miniOrange's API for sending emails.
CVSS3: 4.3
EPSS: Низкий
GHSA-w88f-j9rc-h7v3
больше 2 лет назад
Jenkins SAML Single Sign On(SSO) Plugin missing permission checks
CVSS3: 4.3
EPSS: Низкий
Уязвимостей на страницу
20
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2023-32996 A missing permission check in Jenkins SAML Single Sign On(SSO) Plugin 2.0.0 and earlier allows attackers with Overall/Read permission to send an HTTP POST request with JSON body containing attacker-specified content, to miniOrange's API for sending emails. | CVSS3: 4.3 | 0% Низкий | больше 2 лет назад | |
GHSA-w88f-j9rc-h7v3 Jenkins SAML Single Sign On(SSO) Plugin missing permission checks | CVSS3: 4.3 | 0% Низкий | больше 2 лет назад |
Уязвимостей на страницу
20