Количество 3
Количество 3
CVE-2023-40341
A cross-site request forgery (CSRF) vulnerability in Jenkins Blue Ocean Plugin 1.27.5 and earlier allows attackers to connect to an attacker-specified URL, capturing GitHub credentials associated with an attacker-specified job.
CVE-2023-40341
A cross-site request forgery (CSRF) vulnerability in Jenkins Blue Ocean Plugin 1.27.5 and earlier allows attackers to connect to an attacker-specified URL, capturing GitHub credentials associated with an attacker-specified job.
GHSA-g4pq-p927-7pgg
Jenkins Blue Ocean Plugin cross-site request forgery vulnerability
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2023-40341 A cross-site request forgery (CSRF) vulnerability in Jenkins Blue Ocean Plugin 1.27.5 and earlier allows attackers to connect to an attacker-specified URL, capturing GitHub credentials associated with an attacker-specified job. | CVSS3: 5.4 | 0% Низкий | больше 2 лет назад | |
CVE-2023-40341 A cross-site request forgery (CSRF) vulnerability in Jenkins Blue Ocean Plugin 1.27.5 and earlier allows attackers to connect to an attacker-specified URL, capturing GitHub credentials associated with an attacker-specified job. | CVSS3: 8.8 | 0% Низкий | больше 2 лет назад | |
GHSA-g4pq-p927-7pgg Jenkins Blue Ocean Plugin cross-site request forgery vulnerability | CVSS3: 5.4 | 0% Низкий | больше 2 лет назад |
Уязвимостей на страницу