Filtered by vendor Jenkins Subscriptions
Filtered by product Openshift Login Subscriptions
Total 2 CVE
CVE Vendors Products Updated CVSS v3.1
CVE-2023-37947 2 Jenkins, Redhat 2 Openshift Login, Ocp Tools 2024-08-02 6.1 Medium
Jenkins OpenShift Login Plugin 1.1.0.227.v27e08dfb_1a_20 and earlier improperly determines that a redirect URL after login is legitimately pointing to Jenkins, allowing attackers to perform phishing attacks.
CVE-2023-37946 2 Jenkins, Redhat 2 Openshift Login, Ocp Tools 2024-08-02 8.8 High
Jenkins OpenShift Login Plugin 1.1.0.227.v27e08dfb_1a_20 and earlier does not invalidate the previous session on login.