Description
Jenkins 2.393 and earlier, LTS 2.375.3 and earlier prints an error stack trace on agent-related pages when agent connections are broken, potentially revealing information about Jenkins configuration that is otherwise inaccessible to attackers.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2023-1101 | Jenkins 2.393 and earlier, LTS 2.375.3 and earlier prints an error stack trace on agent-related pages when agent connections are broken, potentially revealing information about Jenkins configuration that is otherwise inaccessible to attackers. |
Github GHSA |
GHSA-rrgp-c2w8-6vg6 | Information disclosure through error stack traces related to agents |
References
History
Tue, 04 Mar 2025 03:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: jenkins
Published:
Updated: 2025-02-28T18:52:53.060Z
Reserved: 2023-03-07T09:35:48.507Z
Link: CVE-2023-27904
Updated: 2024-08-02T12:23:30.559Z
Status : Modified
Published: 2023-03-10T21:15:15.733
Modified: 2025-02-28T19:15:35.873
Link: CVE-2023-27904
OpenCVE Enrichment
No data.
Weaknesses
EUVD
Github GHSA