Skip to main content

Vendor/product archive

jenkins / tuleap_authentication CVEs

Beta · best-effort

1 CVEs tagged to jenkins / tuleap_authentication0 Critical, 0 High, 1 Medium, 0 Low, 0 Unrated.

CVE-2023-40343

Published Aug 16, 2023

Jenkins Tuleap Authentication Plugin 1.1.20 and earlier uses a non-constant time comparison function when validating an authentication token allowing attackers to use statistical…

CVSS 5.9 · Medium
Vendor/product tagsBeta · best-effort
Showing 1-1 of 1 CVEsPage 1 of 1