CVE-2023-24445

6.1MEDIUM

Jenkins OpenID Plugin 2.4 and earlier improperly determines that a redirect URL after login is legitimately pointing to Jenkins.

Published: 1/26/2023Updated: 4/2/2025

Description

Jenkins OpenID Plugin 2.4 and earlier improperly determines that a redirect URL after login is legitimately pointing to Jenkins.

AI AnalysisPowered by AI

Affected Products

jenkinsopenid

References