Vulnerabilities (CVE)

Filtered by vendor Jenkins Subscribe
Filtered by product Servicenow Devops
Total 2 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2023-3414 1 Jenkins 1 Servicenow Devops 2023-12-10 N/A 6.5 MEDIUM
A cross-site request forgery vulnerability exists in versions of the Jenkins Plug-in for ServiceNow DevOps prior to 1.38.1 that, if exploited successfully, could cause the unwanted exposure of sensitive information. To address this issue, apply the 1.38.1 version of the Jenkins plug-in for ServiceNow DevOps on your Jenkins server. No changes are required on your instances of the Now Platform.
CVE-2023-3442 1 Jenkins 1 Servicenow Devops 2023-12-10 N/A 7.5 HIGH
A missing authorization vulnerability exists in versions of the Jenkins Plug-in for ServiceNow DevOps prior to 1.38.1 that, if exploited successfully, could cause the unwanted exposure of sensitive information. To address this issue, apply the 1.38.1 version of the Jenkins plug-in for ServiceNow DevOps on your Jenkins server. No changes are required on your instances of the Now Platform.