Description
A cross-site request forgery (CSRF) vulnerability in Jenkins WSO2 Oauth Plugin 1.0 and earlier allows attackers to trick users into logging in to the attacker's account.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2023-1497 | A cross-site request forgery (CSRF) vulnerability in Jenkins WSO2 Oauth Plugin 1.0 and earlier allows attackers to trick users into logging in to the attacker's account. |
Github GHSA |
GHSA-7xgj-j9hp-c692 | Jenkins WSO2 Oauth Plugin cross-site request forgery vulnerability |
References
History
Thu, 23 Jan 2025 16:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: jenkins
Published:
Updated: 2025-01-23T15:34:50.994Z
Reserved: 2023-05-16T10:55:43.522Z
Link: CVE-2023-33006
Updated: 2024-08-02T15:32:46.471Z
Status : Modified
Published: 2023-05-16T17:15:12.467
Modified: 2025-01-23T16:15:32.103
Link: CVE-2023-33006
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD
Github GHSA