CVE-2023-24445 Information

Description

Jenkins OpenID Plugin 2.4 and earlier improperly determines that a redirect URL after login is legitimately pointing to Jenkins.

Reference

https://www.jenkins.io/security/advisory/2023-01-24/#SECURITY-2997

Share on: