CVE-2023-41933
published 2023-09-06CVE-2023-41933: Jenkins Job Configuration History Plugin 1227.v7a_79fc4dc01f and earlier does not configure its XML parser to prevent XML external entity (XXE) attacks.
PriorityP346high8.8CVSS 3.1
AVNACLPRLUINSUCHIHAH
EPSS
0.75%
50.7th percentile
Jenkins Job Configuration History Plugin 1227.v7a_79fc4dc01f and earlier does not configure its XML parser to prevent XML external entity (XXE) attacks.
Affected
17 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| jenkins | assembla_auth_plugin | — | — |
| jenkins | aws_codecommit_trigger_plugin | — | — |
| jenkins | bitbucket_push_and_pull_request_plugin | — | — |
| jenkins | config_file_provider_plugin | — | — |
| jenkins | disabled_permissions_can_be_granted_by_ssh2_easy_plugin | — | — |
| jenkins | disabled_permissions_granted_by_assembla_auth_plugin | — | — |
| jenkins | frugal_testing_plugin | — | — |
| jenkins | google_login_plugin | — | — |
| jenkins | ivy_plugin | — | — |
| jenkins | job_configuration_history | <= 1229.v3039470161a_d | — |
| jenkins | job_configuration_history_plugin | — | — |
| jenkins | non-constant_time_token_comparison_in_google_login_plugin | — | — |
| jenkins | pipeline_maven_integration_plugin | — | — |
| jenkins | qualys_container_scanning_connector_plugin | — | — |
| jenkins | ssh2_easy_plugin | — | — |
| jenkins | tap_plugin | — | — |
| jenkins_project | jenkins_job_configuration_history_plugin | <= 1227.v7a_79fc4dc01f | — |
CVSS provenance
nvdv3.18.8HIGHCVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
ghsa6.5MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
Solr search discloses password hashes of all users
ghsa·2023-12-16·CVSS 6.5
CVE-2023-50719 [MEDIUM] CWE-200 Solr search discloses password hashes of all users
Solr search discloses password hashes of all users
### Impact
The Solr-based search in XWiki discloses the password hashes of all users to anyone with view right on the respective user profiles. By default, all user profiles are public. To reproduce, it is sufficient to search for `propertyvalue:?* AND reference:*.password` and then deselect the "Document" property under "Result type" in the "Refine your search" widget at the right of the search results. If this displays any passwords or password hashes, the installation is vulnerable.
By default, passwords in XWiki are salted and hashed with SHA-512. On XWiki versions affected by [CVE-2022-41933](https://github.com/xwiki/xwiki-platform/security/advisories/GHSA-q2hm-2h45-v5g3), passwords are stored in plain text if they have been set usi
GHSA
Job Configuration History Plugin's path traversal allows exploiting XXE vulnerability
ghsa·2023-09-06
CVE-2023-41933 [HIGH] CWE-611 Job Configuration History Plugin's path traversal allows exploiting XXE vulnerability
Job Configuration History Plugin's path traversal allows exploiting XXE vulnerability
Jenkins Job Configuration History Plugin 1227.v7a_79fc4dc01f and earlier does not configure its XML parser to prevent XML external entity (XXE) attacks.
OSV
Job Configuration History Plugin's path traversal allows exploiting XXE vulnerability
osv·2023-09-06
CVE-2023-41933 [HIGH] Job Configuration History Plugin's path traversal allows exploiting XXE vulnerability
Job Configuration History Plugin's path traversal allows exploiting XXE vulnerability
Jenkins Job Configuration History Plugin 1227.v7a_79fc4dc01f and earlier does not configure its XML parser to prevent XML external entity (XXE) attacks.
Jenkins
Jenkins Security Advisory 2023-09-06
vendor_jenkins·2023-09-06·CVSS 4.3
CVE-2022-46751 [MEDIUM] Jenkins Security Advisory 2023-09-06
Title: Jenkins Security Advisory 2023-09-06
Jenkins Security Advisory 2023-09-06
Jenkins Security Home
For Administrators
Overview
Terminology
Vulnerabilities and Scoring
Security Advisories
Security Issues
Advisory Schedule
Vulnerabilities in Plugins
How We Fix Security Issues
For Reporters
Reporting Vulnerabilities
Jenkins CNA
For Maintainers
Overview
Vulnerabilities in Plugins
Jenkins Security Team
About
Contributions
This advisory announces vulnerabilities in the following Jenkins deliverables:
Assembla Auth
Plugin
AWS CodeCommit Trigger
Plugin
Bitbucket Push and Pull Request
Plugin
Frugal Testing
Plugin
Google Login
Plugin
Ivy
Plugin
Job Configuration His
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
2023-09-06
Published