Vulnerability Details CVE-2023-30532
A missing permission check in Jenkins TurboScript Plugin 1.3 and earlier allows attackers with Item/Read permission to trigger builds of jobs corresponding to the attacker-specified repository.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.001
EPSS Ranking 16.6%
CVSS Severity
CVSS v3 Score 6.5
Products affected by CVE-2023-30532
-
cpe:2.3:a:jenkins:turboscript:-
-
cpe:2.3:a:jenkins:turboscript:1.0
-
cpe:2.3:a:jenkins:turboscript:1.2
-
cpe:2.3:a:jenkins:turboscript:1.3