CVE-2023-3414
26.07.2023, 19:15
A cross-site request forgery vulnerability exists in versions of the Jenkins Plug-in for ServiceNow DevOps prior to 1.38.1 that, if exploited successfully, could cause the unwanted exposure of sensitive information.To address this issue, apply the 1.38.1 version of the Jenkins plug-in for ServiceNow DevOps on your Jenkins server. No changes are required on your instances of the Now Platform.
Vendor | Product | Version |
---|---|---|
jenkins | servicenow_devops | 𝑥 < 1.38.1 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration