CVE-2023-24444
EPSS 1.6%Session fixation vulnerability in Jenkins OpenID Plugin
發布日:2023/1/26修改日:2024/12/7
描述
Jenkins OpenID Plugin 2.4 and earlier does not invalidate the previous session on login.
受影響套件(1)
- Maven/org.jenkins-ci.plugins:openidfrom 0, <= 2.4