CVE-2023-24445

Publication date

2023-01-24 00:00:00

Family

jenkins

State

PUBLISHED

Description

Jenkins OpenID Plugin 2.4 and earlier improperly determines that a redirect URL after login is legitimately pointing to Jenkins.