Product
jenkins wso2 oauth
5 known vulnerabilities across versions
Vulnerabilities are listed by affected version. Select any CVE for the full briefing and its intelligence graph.
CVE-2025-47889
CVE-2023-33006
CVE-2023-33005
CVE-2023-30528
CVE-2023-30527
<= 1.0
In Jenkins WSO2 Oauth Plugin 1.0 and earlier, authentication claims are accepted without validation by the "WSO2 Oauth" security r
<= 1.0
A cross-site request forgery (CSRF) vulnerability in Jenkins WSO2 Oauth Plugin 1.0 and earlier allows attackers to trick users int
<= 1.0
Jenkins WSO2 Oauth Plugin 1.0 and earlier does not invalidate the previous session on login.
<= 1.0
Jenkins WSO2 Oauth Plugin 1.0 and earlier does not mask the WSO2 Oauth client secret on the global configuration form, increasing
<= 1.0
Jenkins WSO2 Oauth Plugin 1.0 and earlier stores the WSO2 Oauth client secret unencrypted in the global config.xml file on the Jen