Jenkins Security Advisory: Stored XSS, CSRF, and Credential Exposure in Multiple Plugins (CVE-2023-39151 et al.)
Security AdvisoryHighJenkins
Affected:
- Jenkins weekly up to and including 2.415
- Jenkins LTS up to and including 2.401.2
- Bazaar Plugin up to and including 1.22
- Chef Identity Plugin up to and including 2.0.3
- GitLab Authentication Plugin up to and including 1.17.1
Fixed in:
- Jenkins weekly 2.416
- Jenkins LTS 2.401.3
- Jenkins LTS 2.414.1
- GitLab Authentication Plugin 1.18
- Gradle Plugin 2.8.1
Referenced CVEs: CVE-2023-39152
文章内图片已隐藏以节省流量 · Upgrade to Pro to view images & offline archive
This content was auto-fetched from www.jenkins.io, cleaned by our LLM pipeline, and translated to English. View original.