Security Advisory

CVE-2024-23905

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2024-01-24 17:52:27
Last updated 2025-06-20 19:33:21
Assigner jenkins
State PUBLISHED

Description

Jenkins Red Hat Dependency Analytics Plugin 0.7.1 and earlier programmatically disables Content-Security-Policy protection for user-generated content in workspaces, archived artifacts, etc. that Jenkins offers for download.