5.3
CVSSv3

CVE-2023-40349

Published: 16/08/2023 Updated: 18/08/2023
CVSS v3 Base Score: 5.3 | Impact Score: 1.4 | Exploitability Score: 3.9
VMScore: 0

Vulnerability Summary

Jenkins Gogs Plugin 1.0.15 and previous versions improperly initializes an option to secure its webhook endpoint, allowing unauthenticated malicious users to trigger builds of jobs.

Vulnerable Product Search on Vulmon Subscribe to Product

jenkins gogs