CyberRota Analysis
This is a medium severity vulnerability with a CVSS score of 5.3. It affects Jenkins. Exploitation may require the attacker to be authenticated.
CVE
CVE-2023-40348
Severity
MEDIUM
CVSS
5.3
EPSS
0.55%
Jenkins
Original NVD Description
The webhook endpoint in Jenkins Gogs Plugin 1.0.15 and earlier provides unauthenticated attackers information about the existence of jobs in its output.
Related CVEs
Other vulnerabilities affecting the same vendor(s)