Source |
The Hacker News |
Identifiant |
8316729 |
Date de publication |
2023-03-08 22:00:00 (vue: 2023-03-08 18:06:48) |
Titre |
Jenkins Security Alert: New Security Flaws Could Allow Code Execution Attacks |
Texte |
A pair of severe security vulnerabilities have been disclosed in the Jenkins open source automation server that could lead to code execution on targeted systems.
The flaws, tracked as CVE-2023-27898 and CVE-2023-27905, impact the Jenkins server and Update Center, and have been collectively christened CorePlague by cloud security firm Aqua. All versions of Jenkins versions prior to 2.319.2 are |
Notes |
★★
|
Envoyé |
Oui |
Condensat |
2023 27898 and cve 27905 319 alert: all allow aqua are as cve attacks automation been center christened coreplague by cloud code collectively could disclosed execution firm flaws have impact jenkins lead new open pair prior security server severe source systems targeted tracked update versions vulnerabilities |
Tags |
Guideline
Cloud
|
Stories |
|
Move |
|