vulnerability

FreeBSD: VID-f68bb358-be8e-11ed-9215-00e081b7aa2d (CVE-2023-27904): jenkins -- multiple vulnerabilities

Severity
5
CVSS
(AV:N/AC:L/Au:N/C:P/I:N/A:N)
Published
Mar 9, 2023
Added
Mar 23, 2023
Modified
Dec 10, 2025

Description

Jenkins Security Advisory: Description (High) SECURITY-3037 / CVE-2023-27898 XSS vulnerability in plugin manager (Medium) SECURITY-3030 / CVE-2023-24998 (upstream issue), CVE-2023-27900 (MultipartFormDataParser), CVE-2023-27901 (StaplerRequest) DoS vulnerability in bundled Apache Commons FileUpload library (Medium) SECURITY-1807 / CVE-2023-27902 Workspace temporary directories accessible through directory browser (Low) SECURITY-3058 / CVE-2023-27903 Temporary file parameter created with insecure permissions (Low) SECURITY-2120 / CVE-2023-27904 Information disclosure through error stack traces related to agents

Solutions

freebsd-upgrade-package-jenkinsfreebsd-upgrade-package-jenkins-lts
Title
NEW

Explore Exposure Command

Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.