CVE-2021-21673
30.06.2021, 17:15
Jenkins CAS Plugin 1.6.0 and earlier improperly determines that a redirect URL after login is legitimately pointing to Jenkins, allowing attackers to perform phishing attacks.Enginsight
Vendor | Product | Version |
---|---|---|
jenkins | cas | 𝑥 ≤ 1.6.0 |
𝑥
= Vulnerable software versions