An open redirect vulnerability exists in Jenkins Google Login Plugin 1.3 and older in GoogleOAuth2SecurityRealm.java that allows attackers to redirect users to an arbitrary URL after successful login.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2022-4253 | An open redirect vulnerability exists in Jenkins Google Login Plugin 1.3 and older in GoogleOAuth2SecurityRealm.java that allows attackers to redirect users to an arbitrary URL after successful login. |
Github GHSA |
GHSA-j279-cx9m-jv3w | Jenkins Google Login Plugin Open Redirect vulnerability |
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
No history.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-05T12:33:49.343Z
Reserved: 2018-04-16T00:00:00.000Z
Link: CVE-2018-1000174
No data.
Status : Modified
Published: 2018-05-08T15:29:00.317
Modified: 2024-11-21T03:39:51.093
Link: CVE-2018-1000174
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD
Github GHSA