VYPR
High severityNVD Advisory· Published Sep 6, 2023· Updated Sep 26, 2024

CVE-2023-41939

CVE-2023-41939

Description

Jenkins SSH2 Easy Plugin 1.4 and earlier does not verify that permissions configured to be granted are enabled, potentially allowing users formerly granted (typically optional permissions, like Overall/Manage) to access functionality they're no longer entitled to.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected packages

Versions sourced from the GitHub Security Advisory.

PackageAffected versionsPatched versions
org.jenkins-ci.plugins:ssh2easyMaven
< 1.61.6

Affected products

2

Patches

Vulnerability mechanics

References

4

News mentions

1