CVE-2023-50771
13.12.2023, 18:15
Jenkins OpenId Connect Authentication Plugin 2.6 and earlier improperly determines that a redirect URL after login is legitimately pointing to Jenkins, allowing attackers to perform phishing attacks.
Vendor | Product | Version |
---|---|---|
jenkins | openid_connect_authentication | 𝑥 ≤ 2.6 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration