AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2023-41939

HIGH · CVSS 8.8 EPSS 0.55%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2023-09-06 · Last synced 2026-08-04

CyberRota Analysis

This is a high severity vulnerability with a CVSS score of 8.8. It affects Jenkins.

CVE
CVE-2023-41939
Severity
HIGH
CVSS
8.8
EPSS
0.55%
Jenkins

Original NVD Description

Jenkins SSH2 Easy Plugin 1.4 and earlier does not verify that permissions configured to be granted are enabled, potentially allowing users formerly granted (typically optional permissions, like Overall/Manage) to access functionality they're no longer entitled to.

Related CVEs

Other vulnerabilities affecting the same vendor(s)