vulnerability

Jenkins Advisory 2016-05-11: CVE-2016-3726: Open redirect to scheme-relative URLs

Severity
6
CVSS
(AV:N/AC:M/Au:N/C:P/I:P/A:N)
Published
2016-05-17
Added
2017-11-13
Modified
2025-04-14

Description

Multiple open redirect vulnerabilities in Jenkins before 2.3 and LTS before 1.651.2 allow remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via unspecified vectors related to "scheme-relative" URLs.

Solution(s)

jenkins-lts-upgrade-1_651_2jenkins-upgrade-2_3
Title
NEW

Explore Exposure Command

Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.