Description
A missing authorization vulnerability exists in versions of the Jenkins Plug-in for ServiceNow DevOps prior to 1.38.1 that, if exploited successfully, could cause the unwanted exposure of sensitive information. To address this issue, apply the 1.38.1 version of the Jenkins plug-in for ServiceNow DevOps on your Jenkins server. No changes are required on your instances of the Now Platform.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2023-2035 | A missing authorization vulnerability exists in versions of the Jenkins Plug-in for ServiceNow DevOps prior to 1.38.1 that, if exploited successfully, could cause the unwanted exposure of sensitive information. To address this issue, apply the 1.38.1 version of the Jenkins plug-in for ServiceNow DevOps on your Jenkins server. No changes are required on your instances of the Now Platform. |
Github GHSA |
GHSA-cj2x-r74q-vcx9 | Missing authorization in Jenkins Plug-in for ServiceNow |
References
History
Tue, 15 Oct 2024 16:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: SN
Published:
Updated: 2024-10-15T15:53:14.154Z
Reserved: 2023-06-28T13:13:25.323Z
Link: CVE-2023-3442
Updated: 2024-08-02T06:55:03.487Z
Status : Modified
Published: 2023-07-26T19:15:09.873
Modified: 2024-11-21T08:17:16.610
Link: CVE-2023-3442
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD
Github GHSA