CVE-2023-37947
12.07.2023, 16:15
Jenkins OpenShift Login Plugin 1.1.0.227.v27e08dfb_1a_20 and earlier improperly determines that a redirect URL after login is legitimately pointing to Jenkins, allowing attackers to perform phishing attacks.
Vendor | Product | Version |
---|---|---|
jenkins | openshift_login | 𝑥 < 1.1.0.230.v5d7030b_f5432 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration