CVE-2023-24426: High severity jenkins azure ad vulnerability
Published Jan 24, 2023
·Updated
Jenkins Azure AD Plugin 303.va91ef20ee49f and earlier does not invalidate the previous session on login.
Affected Software
1 affected component
Jenkins Azure Ad Jenkins<=303.va_91ef20ee49f
Event History
Jan 24, 2023
CVE Published
12:00 AM
Data Sourced
12:00 AM
Description
Frequently Asked Questions
1
What is the vulnerability ID for this Jenkins Azure AD Plugin vulnerability?
The vulnerability ID for this Jenkins Azure AD Plugin vulnerability is CVE-2023-24426.
2
What is the severity of CVE-2023-24426?
The severity of CVE-2023-24426 is high with a severity value of 8.8.
3
What does the Jenkins Azure AD Plugin 303.va_91ef20ee49f and earlier vulnerability do?
The Jenkins Azure AD Plugin 303.va_91ef20ee49f and earlier vulnerability does not invalidate the previous session on login.
4
How can I fix the Jenkins Azure AD Plugin 303.va_91ef20ee49f and earlier vulnerability?
To fix the Jenkins Azure AD Plugin 303.va_91ef20ee49f and earlier vulnerability, update to a version that includes the fix.
5
Where can I find more information about CVE-2023-24426?
You can find more information about CVE-2023-24426 on the Jenkins website.