Vulnerability Details CVE-2023-24434
A cross-site request forgery (CSRF) vulnerability in Jenkins GitHub Pull Request Builder Plugin 1.42.2 and earlier allows attackers to connect to an attacker-specified URL using attacker-specified credentials IDs obtained through another method, capturing credentials stored in Jenkins.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.002
EPSS Ranking 46.1%
CVSS Severity
CVSS v3 Score 8.8
Products affected by CVE-2023-24434
-
cpe:2.3:a:jenkins:github_pull_request_builder:1
-
cpe:2.3:a:jenkins:github_pull_request_builder:1.1
-
cpe:2.3:a:jenkins:github_pull_request_builder:1.1.1
-
cpe:2.3:a:jenkins:github_pull_request_builder:1.11
-
cpe:2.3:a:jenkins:github_pull_request_builder:1.11.1
-
cpe:2.3:a:jenkins:github_pull_request_builder:1.11.2
-
cpe:2.3:a:jenkins:github_pull_request_builder:1.12
-
cpe:2.3:a:jenkins:github_pull_request_builder:1.13
-
cpe:2.3:a:jenkins:github_pull_request_builder:1.13-1
-
cpe:2.3:a:jenkins:github_pull_request_builder:1.14
-
cpe:2.3:a:jenkins:github_pull_request_builder:1.14-1
-
cpe:2.3:a:jenkins:github_pull_request_builder:1.14-2
-
cpe:2.3:a:jenkins:github_pull_request_builder:1.14-3
-
cpe:2.3:a:jenkins:github_pull_request_builder:1.14-4
-
cpe:2.3:a:jenkins:github_pull_request_builder:1.14-5
-
cpe:2.3:a:jenkins:github_pull_request_builder:1.14-6
-
cpe:2.3:a:jenkins:github_pull_request_builder:1.14-7
-
cpe:2.3:a:jenkins:github_pull_request_builder:1.15-0
-
cpe:2.3:a:jenkins:github_pull_request_builder:1.15-1
-
cpe:2.3:a:jenkins:github_pull_request_builder:1.16-0
-
cpe:2.3:a:jenkins:github_pull_request_builder:1.16-1
-
cpe:2.3:a:jenkins:github_pull_request_builder:1.16-2
-
cpe:2.3:a:jenkins:github_pull_request_builder:1.16-3
-
cpe:2.3:a:jenkins:github_pull_request_builder:1.16-4
-
cpe:2.3:a:jenkins:github_pull_request_builder:1.16-5
-
cpe:2.3:a:jenkins:github_pull_request_builder:1.16-6
-
cpe:2.3:a:jenkins:github_pull_request_builder:1.16-7
-
cpe:2.3:a:jenkins:github_pull_request_builder:1.16-8
-
cpe:2.3:a:jenkins:github_pull_request_builder:1.17
-
cpe:2.3:a:jenkins:github_pull_request_builder:1.18
-
cpe:2.3:a:jenkins:github_pull_request_builder:1.19
-
cpe:2.3:a:jenkins:github_pull_request_builder:1.2
-
cpe:2.3:a:jenkins:github_pull_request_builder:1.20
-
cpe:2.3:a:jenkins:github_pull_request_builder:1.20.1
-
cpe:2.3:a:jenkins:github_pull_request_builder:1.21
-
cpe:2.3:a:jenkins:github_pull_request_builder:1.21.1
-
cpe:2.3:a:jenkins:github_pull_request_builder:1.22
-
cpe:2.3:a:jenkins:github_pull_request_builder:1.22.1
-
cpe:2.3:a:jenkins:github_pull_request_builder:1.22.2
-
cpe:2.3:a:jenkins:github_pull_request_builder:1.22.3
-
cpe:2.3:a:jenkins:github_pull_request_builder:1.22.4
-
cpe:2.3:a:jenkins:github_pull_request_builder:1.23
-
cpe:2.3:a:jenkins:github_pull_request_builder:1.23.1
-
cpe:2.3:a:jenkins:github_pull_request_builder:1.23.2
-
cpe:2.3:a:jenkins:github_pull_request_builder:1.23.3
-
cpe:2.3:a:jenkins:github_pull_request_builder:1.24
-
cpe:2.3:a:jenkins:github_pull_request_builder:1.24.1
-
cpe:2.3:a:jenkins:github_pull_request_builder:1.24.2
-
cpe:2.3:a:jenkins:github_pull_request_builder:1.24.3
-
cpe:2.3:a:jenkins:github_pull_request_builder:1.24.4
-
cpe:2.3:a:jenkins:github_pull_request_builder:1.24.5
-
cpe:2.3:a:jenkins:github_pull_request_builder:1.24.6
-
cpe:2.3:a:jenkins:github_pull_request_builder:1.24.7
-
cpe:2.3:a:jenkins:github_pull_request_builder:1.24.8
-
cpe:2.3:a:jenkins:github_pull_request_builder:1.25
-
cpe:2.3:a:jenkins:github_pull_request_builder:1.26
-
cpe:2.3:a:jenkins:github_pull_request_builder:1.26.1
-
cpe:2.3:a:jenkins:github_pull_request_builder:1.26.2
-
cpe:2.3:a:jenkins:github_pull_request_builder:1.27
-
cpe:2.3:a:jenkins:github_pull_request_builder:1.28
-
cpe:2.3:a:jenkins:github_pull_request_builder:1.28.1
-
cpe:2.3:a:jenkins:github_pull_request_builder:1.28.2
-
cpe:2.3:a:jenkins:github_pull_request_builder:1.28.3
-
cpe:2.3:a:jenkins:github_pull_request_builder:1.28.4
-
cpe:2.3:a:jenkins:github_pull_request_builder:1.28.5
-
cpe:2.3:a:jenkins:github_pull_request_builder:1.28.6
-
cpe:2.3:a:jenkins:github_pull_request_builder:1.29
-
cpe:2.3:a:jenkins:github_pull_request_builder:1.29.1
-
cpe:2.3:a:jenkins:github_pull_request_builder:1.29.2
-
cpe:2.3:a:jenkins:github_pull_request_builder:1.29.3
-
cpe:2.3:a:jenkins:github_pull_request_builder:1.29.4
-
cpe:2.3:a:jenkins:github_pull_request_builder:1.29.5
-
cpe:2.3:a:jenkins:github_pull_request_builder:1.29.6
-
cpe:2.3:a:jenkins:github_pull_request_builder:1.29.7
-
cpe:2.3:a:jenkins:github_pull_request_builder:1.29.8
-
cpe:2.3:a:jenkins:github_pull_request_builder:1.3
-
cpe:2.3:a:jenkins:github_pull_request_builder:1.3.1
-
cpe:2.3:a:jenkins:github_pull_request_builder:1.3.2
-
cpe:2.3:a:jenkins:github_pull_request_builder:1.30
-
cpe:2.3:a:jenkins:github_pull_request_builder:1.30.1
-
cpe:2.3:a:jenkins:github_pull_request_builder:1.30.2
-
cpe:2.3:a:jenkins:github_pull_request_builder:1.30.3
-
cpe:2.3:a:jenkins:github_pull_request_builder:1.30.4
-
cpe:2.3:a:jenkins:github_pull_request_builder:1.30.5
-
cpe:2.3:a:jenkins:github_pull_request_builder:1.30.6
-
cpe:2.3:a:jenkins:github_pull_request_builder:1.31.1
-
cpe:2.3:a:jenkins:github_pull_request_builder:1.31.2
-
cpe:2.3:a:jenkins:github_pull_request_builder:1.31.3
-
cpe:2.3:a:jenkins:github_pull_request_builder:1.31.4
-
cpe:2.3:a:jenkins:github_pull_request_builder:1.32.1
-
cpe:2.3:a:jenkins:github_pull_request_builder:1.32.2
-
cpe:2.3:a:jenkins:github_pull_request_builder:1.32.3
-
cpe:2.3:a:jenkins:github_pull_request_builder:1.32.4
-
cpe:2.3:a:jenkins:github_pull_request_builder:1.32.5
-
cpe:2.3:a:jenkins:github_pull_request_builder:1.32.6
-
cpe:2.3:a:jenkins:github_pull_request_builder:1.32.7
-
cpe:2.3:a:jenkins:github_pull_request_builder:1.32.8
-
cpe:2.3:a:jenkins:github_pull_request_builder:1.33.0
-
cpe:2.3:a:jenkins:github_pull_request_builder:1.33.1
-
cpe:2.3:a:jenkins:github_pull_request_builder:1.33.2
-
cpe:2.3:a:jenkins:github_pull_request_builder:1.33.3
-
cpe:2.3:a:jenkins:github_pull_request_builder:1.33.4
-
cpe:2.3:a:jenkins:github_pull_request_builder:1.34.0
-
cpe:2.3:a:jenkins:github_pull_request_builder:1.35.0
-
cpe:2.3:a:jenkins:github_pull_request_builder:1.36.0
-
cpe:2.3:a:jenkins:github_pull_request_builder:1.36.1
-
cpe:2.3:a:jenkins:github_pull_request_builder:1.36.2
-
cpe:2.3:a:jenkins:github_pull_request_builder:1.37.0
-
cpe:2.3:a:jenkins:github_pull_request_builder:1.38.0
-
cpe:2.3:a:jenkins:github_pull_request_builder:1.39.0
-
cpe:2.3:a:jenkins:github_pull_request_builder:1.4
-
cpe:2.3:a:jenkins:github_pull_request_builder:1.40.0
-
cpe:2.3:a:jenkins:github_pull_request_builder:1.41.0
-
cpe:2.3:a:jenkins:github_pull_request_builder:1.42.0
-
cpe:2.3:a:jenkins:github_pull_request_builder:1.42.1
-
cpe:2.3:a:jenkins:github_pull_request_builder:1.42.2
-
cpe:2.3:a:jenkins:github_pull_request_builder:1.5
-
cpe:2.3:a:jenkins:github_pull_request_builder:1.5.1
-
cpe:2.3:a:jenkins:github_pull_request_builder:1.6
-
cpe:2.3:a:jenkins:github_pull_request_builder:1.7
-
cpe:2.3:a:jenkins:github_pull_request_builder:1.8
-
cpe:2.3:a:jenkins:github_pull_request_builder:1.9