Jenkins Plugin Vulnerabilities Advisory: XSS, XXE, and RCE in Multiple Plugins
Security Advisory
JSA-2024-11-13
High
Jenkins
Affected:
- Authorize Project Plugin: 1.7.2 and earlier
- IvyTrigger Plugin: 1.01 and earlier
- OpenID Connect Authentication Plugin: 4.418.vccc7061f5b_6d and earlier
- Pipeline: Declarative Plugin: 2.2214.vb_b_34b_2ea_9b_83 and earlier
- Pipeline: Groovy Plugin: 3990.vd281dd77a_388 and earlier
Referenced CVEs:
CVE-2024-52550
文章内图片已隐藏以节省流量 · Upgrade to Pro to view images & offline archive
This content was auto-fetched from www.jenkins.io, cleaned by our LLM pipeline, and translated to English. View original.