Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2023-1002 | Jenkins 2.393 and earlier, LTS 2.375.3 and earlier uses the Apache Commons FileUpload library without specifying limits for the number of request parts introduced in version 1.5 for CVE-2023-24998 in hudson.util.MultipartFormDataParser, allowing attackers to trigger a denial of service. |
Github GHSA |
GHSA-frgr-c5f2-8qhh | Denial of service in Jenkins Core |
Tue, 04 Mar 2025 03:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: jenkins
Published:
Updated: 2025-02-28T18:43:28.521Z
Reserved: 2023-03-07T09:35:48.506Z
Link: CVE-2023-27900
Updated: 2024-08-02T12:23:30.566Z
Status : Modified
Published: 2023-03-10T21:15:15.517
Modified: 2025-02-28T19:15:35.247
Link: CVE-2023-27900
OpenCVE Enrichment
No data.
EUVD
Github GHSA