Security Advisory
CVE-2022-46683
CVE vulnerability detail — eXtreme Datacenter Security Operations
Description
Jenkins Google Login Plugin 1.4 through 1.6 (both inclusive) improperly determines that a redirect URL after login is legitimately pointing to Jenkins.