Description
Jenkins WSO2 Oauth Plugin 1.0 and earlier does not invalidate the previous session on login.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2023-1656 | Jenkins WSO2 Oauth Plugin 1.0 and earlier does not invalidate the previous session on login. |
Github GHSA |
GHSA-xxq2-74hw-vg6m | Jenkins WSO2 Oauth Plugin Session Fixation vulnerability |
References
History
Thu, 23 Jan 2025 16:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: jenkins
Published:
Updated: 2025-01-23T15:38:06.819Z
Reserved: 2023-05-16T10:55:43.522Z
Link: CVE-2023-33005
Updated: 2024-08-02T15:32:46.510Z
Status : Modified
Published: 2023-05-16T17:15:12.420
Modified: 2025-01-23T16:15:31.933
Link: CVE-2023-33005
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD
Github GHSA