5.4
CVSSv3

CVE-2024-23905

Published: 24/01/2024 Updated: 29/01/2024
CVSS v3 Base Score: 5.4 | Impact Score: 2.7 | Exploitability Score: 2.3
VMScore: 0

Vulnerability Summary

Jenkins Red Hat Dependency Analytics Plugin 0.7.1 and previous versions programmatically disables Content-Security-Policy protection for user-generated content in workspaces, archived artifacts, etc. that Jenkins offers for download.

Vulnerable Product Search on Vulmon Subscribe to Product

jenkins red hat dependency analytics

Mailing Lists

Jenkins is an open source automation server which enables developers around the world to reliably build, test, and deploy their software The following releases contain fixes for security vulnerabilities: * Jenkins 2442 * Jenkins LTS 24263 * Git server Plugin 99101v720e86326c09 * GitLab Branch Source Plugin 688v5fa_356ee8520 * Matrix Projec ...