2024-01-24 19:36:33 +01:00
[
{
"id" : 747359905 ,
"name" : "SECURITY-3314-3315" ,
"full_name" : "jenkinsci-cert\/SECURITY-3314-3315" ,
"owner" : {
"login" : "jenkinsci-cert" ,
"id" : 9285726 ,
"avatar_url" : "https:\/\/avatars.githubusercontent.com\/u\/9285726?v=4" ,
"html_url" : "https:\/\/github.com\/jenkinsci-cert"
} ,
"html_url" : "https:\/\/github.com\/jenkinsci-cert\/SECURITY-3314-3315" ,
"description" : "Workaround for disabling the CLI to mitigate SECURITY-3314\/CVE-2024-23897 and SECURITY-3315\/CVE-2024-23898" ,
"fork" : false ,
"created_at" : "2024-01-23T19:19:04Z" ,
2024-01-30 01:26:04 +01:00
"updated_at" : "2024-01-30T00:16:11Z" ,
2024-01-24 19:36:33 +01:00
"pushed_at" : "2024-01-23T19:21:08Z" ,
2024-01-30 01:26:04 +01:00
"stargazers_count" : 4 ,
"watchers_count" : 4 ,
2024-01-24 19:36:33 +01:00
"has_discussions" : false ,
"forks_count" : 0 ,
"allow_forking" : true ,
"is_template" : false ,
"web_commit_signoff_required" : false ,
"topics" : [ ] ,
"visibility" : "public" ,
"forks" : 0 ,
2024-01-30 01:26:04 +01:00
"watchers" : 4 ,
2024-01-24 19:36:33 +01:00
"score" : 0 ,
2024-01-28 07:25:46 +01:00
"subscribers_count" : 3
2024-01-25 13:45:05 +01:00
} ,
2024-01-26 13:39:18 +01:00
{
"id" : 748543127 ,
"name" : "CVE-2024-23897" ,
"full_name" : "binganao\/CVE-2024-23897" ,
"owner" : {
"login" : "binganao" ,
"id" : 70050083 ,
"avatar_url" : "https:\/\/avatars.githubusercontent.com\/u\/70050083?v=4" ,
"html_url" : "https:\/\/github.com\/binganao"
} ,
"html_url" : "https:\/\/github.com\/binganao\/CVE-2024-23897" ,
"description" : null ,
"fork" : false ,
"created_at" : "2024-01-26T08:02:00Z" ,
2024-01-30 01:26:04 +01:00
"updated_at" : "2024-01-29T23:46:07Z" ,
2024-01-26 13:39:18 +01:00
"pushed_at" : "2024-01-26T08:03:10Z" ,
2024-01-30 01:26:04 +01:00
"stargazers_count" : 72 ,
"watchers_count" : 72 ,
2024-01-26 13:39:18 +01:00
"has_discussions" : false ,
2024-01-28 19:25:44 +01:00
"forks_count" : 4 ,
2024-01-26 13:39:18 +01:00
"allow_forking" : true ,
"is_template" : false ,
"web_commit_signoff_required" : false ,
"topics" : [ ] ,
"visibility" : "public" ,
2024-01-28 19:25:44 +01:00
"forks" : 4 ,
2024-01-30 01:26:04 +01:00
"watchers" : 72 ,
2024-01-26 13:39:18 +01:00
"score" : 0 ,
2024-01-29 07:25:51 +01:00
"subscribers_count" : 2
2024-01-26 13:39:18 +01:00
} ,
{
"id" : 748577478 ,
"name" : "CVE-2024-23897" ,
"full_name" : "h4x0r-dz\/CVE-2024-23897" ,
"owner" : {
"login" : "h4x0r-dz" ,
"id" : 26070859 ,
"avatar_url" : "https:\/\/avatars.githubusercontent.com\/u\/26070859?v=4" ,
"html_url" : "https:\/\/github.com\/h4x0r-dz"
} ,
"html_url" : "https:\/\/github.com\/h4x0r-dz\/CVE-2024-23897" ,
"description" : "CVE-2024-23897" ,
"fork" : false ,
"created_at" : "2024-01-26T09:44:32Z" ,
2024-01-30 07:26:00 +01:00
"updated_at" : "2024-01-30T06:12:49Z" ,
2024-01-28 13:25:40 +01:00
"pushed_at" : "2024-01-28T06:47:28Z" ,
2024-01-30 07:26:00 +01:00
"stargazers_count" : 85 ,
"watchers_count" : 85 ,
2024-01-26 13:39:18 +01:00
"has_discussions" : false ,
2024-01-30 07:26:00 +01:00
"forks_count" : 15 ,
2024-01-26 13:39:18 +01:00
"allow_forking" : true ,
"is_template" : false ,
"web_commit_signoff_required" : false ,
"topics" : [ ] ,
"visibility" : "public" ,
2024-01-30 07:26:00 +01:00
"forks" : 15 ,
"watchers" : 85 ,
2024-01-27 01:25:52 +01:00
"score" : 0 ,
2024-01-29 07:25:51 +01:00
"subscribers_count" : 2
2024-01-27 01:25:52 +01:00
} ,
{
"id" : 748785405 ,
"name" : "CVE-2024-23897" ,
"full_name" : "xaitax\/CVE-2024-23897" ,
"owner" : {
"login" : "xaitax" ,
"id" : 5014849 ,
"avatar_url" : "https:\/\/avatars.githubusercontent.com\/u\/5014849?v=4" ,
"html_url" : "https:\/\/github.com\/xaitax"
} ,
"html_url" : "https:\/\/github.com\/xaitax\/CVE-2024-23897" ,
"description" : "CVE-2024-23897 | Jenkins <= 2.441 & <= LTS 2.426.2 PoC and scanner. " ,
"fork" : false ,
"created_at" : "2024-01-26T19:00:03Z" ,
2024-01-29 13:26:15 +01:00
"updated_at" : "2024-01-29T07:55:47Z" ,
2024-01-27 13:25:33 +01:00
"pushed_at" : "2024-01-27T10:38:25Z" ,
2024-01-29 13:26:15 +01:00
"stargazers_count" : 8 ,
"watchers_count" : 8 ,
2024-01-27 01:25:52 +01:00
"has_discussions" : false ,
2024-01-28 19:25:44 +01:00
"forks_count" : 2 ,
2024-01-27 01:25:52 +01:00
"allow_forking" : true ,
"is_template" : false ,
"web_commit_signoff_required" : false ,
"topics" : [ ] ,
"visibility" : "public" ,
2024-01-28 19:25:44 +01:00
"forks" : 2 ,
2024-01-29 13:26:15 +01:00
"watchers" : 8 ,
2024-01-27 01:25:52 +01:00
"score" : 0 ,
2024-01-27 07:25:49 +01:00
"subscribers_count" : 1
2024-01-27 01:25:52 +01:00
} ,
{
"id" : 748847022 ,
"name" : "poc-cve-2024-23897" ,
"full_name" : "vmtyan\/poc-cve-2024-23897" ,
"owner" : {
"login" : "vmtyan" ,
"id" : 157635595 ,
"avatar_url" : "https:\/\/avatars.githubusercontent.com\/u\/157635595?v=4" ,
"html_url" : "https:\/\/github.com\/vmtyan"
} ,
"html_url" : "https:\/\/github.com\/vmtyan\/poc-cve-2024-23897" ,
"description" : null ,
"fork" : false ,
"created_at" : "2024-01-26T21:39:26Z" ,
"updated_at" : "2024-01-26T21:40:59Z" ,
"pushed_at" : "2024-01-26T21:46:10Z" ,
"stargazers_count" : 0 ,
"watchers_count" : 0 ,
"has_discussions" : false ,
"forks_count" : 0 ,
"allow_forking" : true ,
"is_template" : false ,
"web_commit_signoff_required" : false ,
"topics" : [ ] ,
"visibility" : "public" ,
"forks" : 0 ,
"watchers" : 0 ,
2024-01-26 13:39:18 +01:00
"score" : 0 ,
2024-01-27 07:25:49 +01:00
"subscribers_count" : 1
} ,
{
"id" : 748932948 ,
"name" : "CVE-2024-23897" ,
"full_name" : "yoryio\/CVE-2024-23897" ,
"owner" : {
"login" : "yoryio" ,
"id" : 134471901 ,
"avatar_url" : "https:\/\/avatars.githubusercontent.com\/u\/134471901?v=4" ,
"html_url" : "https:\/\/github.com\/yoryio"
} ,
"html_url" : "https:\/\/github.com\/yoryio\/CVE-2024-23897" ,
"description" : "Scanner for CVE-2024-23897 - Jenkins" ,
"fork" : false ,
"created_at" : "2024-01-27T04:35:20Z" ,
2024-01-28 13:25:40 +01:00
"updated_at" : "2024-01-28T10:21:27Z" ,
2024-01-27 07:25:49 +01:00
"pushed_at" : "2024-01-27T04:38:52Z" ,
2024-01-28 13:25:40 +01:00
"stargazers_count" : 1 ,
"watchers_count" : 1 ,
2024-01-27 07:25:49 +01:00
"has_discussions" : false ,
"forks_count" : 0 ,
"allow_forking" : true ,
"is_template" : false ,
"web_commit_signoff_required" : false ,
"topics" : [
"cve-2024-23897" ,
"jenkins"
] ,
"visibility" : "public" ,
"forks" : 0 ,
2024-01-28 13:25:40 +01:00
"watchers" : 1 ,
2024-01-27 07:25:49 +01:00
"score" : 0 ,
2024-01-28 07:25:46 +01:00
"subscribers_count" : 1
2024-01-27 19:25:26 +01:00
} ,
{
"id" : 749052396 ,
"name" : "CVE-2024-23897" ,
"full_name" : "CKevens\/CVE-2024-23897" ,
"owner" : {
"login" : "CKevens" ,
"id" : 7390055 ,
"avatar_url" : "https:\/\/avatars.githubusercontent.com\/u\/7390055?v=4" ,
"html_url" : "https:\/\/github.com\/CKevens"
} ,
"html_url" : "https:\/\/github.com\/CKevens\/CVE-2024-23897" ,
"description" : "CVE-2024-23897 jenkins-cli" ,
"fork" : false ,
"created_at" : "2024-01-27T12:57:28Z" ,
2024-01-29 07:25:51 +01:00
"updated_at" : "2024-01-29T02:02:06Z" ,
2024-01-27 19:25:26 +01:00
"pushed_at" : "2024-01-27T13:10:37Z" ,
2024-01-29 07:25:51 +01:00
"stargazers_count" : 1 ,
"watchers_count" : 1 ,
2024-01-27 19:25:26 +01:00
"has_discussions" : false ,
"forks_count" : 0 ,
"allow_forking" : true ,
"is_template" : false ,
"web_commit_signoff_required" : false ,
"topics" : [ ] ,
"visibility" : "public" ,
"forks" : 0 ,
2024-01-29 07:25:51 +01:00
"watchers" : 1 ,
2024-01-27 19:25:26 +01:00
"score" : 0 ,
2024-01-28 07:25:46 +01:00
"subscribers_count" : 1
2024-01-27 19:25:26 +01:00
} ,
{
"id" : 749060845 ,
"name" : "PoC-jenkins-rce_CVE-2024-23897" ,
"full_name" : "iota4\/PoC-jenkins-rce_CVE-2024-23897" ,
"owner" : {
"login" : "iota4" ,
"id" : 148342080 ,
"avatar_url" : "https:\/\/avatars.githubusercontent.com\/u\/148342080?v=4" ,
"html_url" : "https:\/\/github.com\/iota4"
} ,
"html_url" : "https:\/\/github.com\/iota4\/PoC-jenkins-rce_CVE-2024-23897" ,
"description" : "on this git you can find all information on the CVE-2024-23897" ,
"fork" : false ,
"created_at" : "2024-01-27T13:27:57Z" ,
2024-01-28 07:25:46 +01:00
"updated_at" : "2024-01-28T00:56:07Z" ,
2024-01-27 19:25:26 +01:00
"pushed_at" : "2024-01-27T14:43:18Z" ,
2024-01-28 07:25:46 +01:00
"stargazers_count" : 1 ,
"watchers_count" : 1 ,
2024-01-27 19:25:26 +01:00
"has_discussions" : false ,
"forks_count" : 0 ,
"allow_forking" : true ,
"is_template" : false ,
"web_commit_signoff_required" : false ,
"topics" : [ ] ,
"visibility" : "public" ,
"forks" : 0 ,
2024-01-28 07:25:46 +01:00
"watchers" : 1 ,
2024-01-27 19:25:26 +01:00
"score" : 0 ,
2024-01-28 07:25:46 +01:00
"subscribers_count" : 1
2024-01-28 01:25:25 +01:00
} ,
{
"id" : 749172653 ,
"name" : "CVE-2024-23897" ,
"full_name" : "wjlin0\/CVE-2024-23897" ,
"owner" : {
"login" : "wjlin0" ,
"id" : 91306421 ,
"avatar_url" : "https:\/\/avatars.githubusercontent.com\/u\/91306421?v=4" ,
"html_url" : "https:\/\/github.com\/wjlin0"
} ,
"html_url" : "https:\/\/github.com\/wjlin0\/CVE-2024-23897" ,
"description" : "CVE-2024-23897 - Jenkins 任意文件读取 利用工具" ,
"fork" : false ,
"created_at" : "2024-01-27T19:34:48Z" ,
2024-01-30 07:26:00 +01:00
"updated_at" : "2024-01-30T04:26:41Z" ,
2024-01-28 19:25:44 +01:00
"pushed_at" : "2024-01-28T15:02:45Z" ,
2024-01-30 07:26:00 +01:00
"stargazers_count" : 9 ,
"watchers_count" : 9 ,
2024-01-28 01:25:25 +01:00
"has_discussions" : false ,
2024-01-30 07:26:00 +01:00
"forks_count" : 3 ,
2024-01-28 01:25:25 +01:00
"allow_forking" : true ,
"is_template" : false ,
"web_commit_signoff_required" : false ,
"topics" : [
"cve" ,
"cve-2024-23897" ,
"jenkins"
] ,
"visibility" : "public" ,
2024-01-30 07:26:00 +01:00
"forks" : 3 ,
"watchers" : 9 ,
2024-01-28 07:25:46 +01:00
"score" : 0 ,
"subscribers_count" : 1
} ,
{
"id" : 749248494 ,
"name" : "CVE-2024-23897" ,
"full_name" : "Vozec\/CVE-2024-23897" ,
"owner" : {
"login" : "Vozec" ,
"id" : 61807609 ,
"avatar_url" : "https:\/\/avatars.githubusercontent.com\/u\/61807609?v=4" ,
"html_url" : "https:\/\/github.com\/Vozec"
} ,
"html_url" : "https:\/\/github.com\/Vozec\/CVE-2024-23897" ,
"description" : "This repository presents a proof-of-concept of CVE-2024-23897" ,
"fork" : false ,
"created_at" : "2024-01-28T01:57:06Z" ,
2024-01-29 13:26:15 +01:00
"updated_at" : "2024-01-29T08:46:37Z" ,
2024-01-28 07:25:46 +01:00
"pushed_at" : "2024-01-28T02:11:59Z" ,
2024-01-29 13:26:15 +01:00
"stargazers_count" : 6 ,
"watchers_count" : 6 ,
2024-01-28 07:25:46 +01:00
"has_discussions" : false ,
2024-01-29 07:25:51 +01:00
"forks_count" : 1 ,
2024-01-28 07:25:46 +01:00
"allow_forking" : true ,
"is_template" : false ,
"web_commit_signoff_required" : false ,
"topics" : [ ] ,
"visibility" : "public" ,
2024-01-29 07:25:51 +01:00
"forks" : 1 ,
2024-01-29 13:26:15 +01:00
"watchers" : 6 ,
2024-01-28 01:25:25 +01:00
"score" : 0 ,
2024-01-29 07:25:51 +01:00
"subscribers_count" : 1
2024-01-28 19:25:44 +01:00
} ,
{
"id" : 749389006 ,
"name" : "CVE-2024-23897" ,
"full_name" : "raheel0x01\/CVE-2024-23897" ,
"owner" : {
"login" : "raheel0x01" ,
"id" : 65211256 ,
"avatar_url" : "https:\/\/avatars.githubusercontent.com\/u\/65211256?v=4" ,
"html_url" : "https:\/\/github.com\/raheel0x01"
} ,
"html_url" : "https:\/\/github.com\/raheel0x01\/CVE-2024-23897" ,
"description" : "Jenkins 2.441 and earlier, LTS 2.426.2 and earlier does not disable a feature of its CLI command parser that replaces an '@' character followed by a file path in an argument with the file's contents, allowing unauthenticated attackers to read arbitrary files on the Jenkins controller file system." ,
"fork" : false ,
"created_at" : "2024-01-28T12:53:23Z" ,
2024-01-30 01:26:04 +01:00
"updated_at" : "2024-01-29T18:53:19Z" ,
2024-01-28 19:25:44 +01:00
"pushed_at" : "2024-01-28T13:28:09Z" ,
2024-01-30 01:26:04 +01:00
"stargazers_count" : 1 ,
"watchers_count" : 1 ,
2024-01-28 19:25:44 +01:00
"has_discussions" : false ,
"forks_count" : 0 ,
"allow_forking" : true ,
"is_template" : false ,
"web_commit_signoff_required" : false ,
"topics" : [ ] ,
"visibility" : "public" ,
"forks" : 0 ,
2024-01-30 01:26:04 +01:00
"watchers" : 1 ,
2024-01-28 19:25:44 +01:00
"score" : 0 ,
2024-01-29 07:25:51 +01:00
"subscribers_count" : 1
} ,
{
"id" : 749635165 ,
"name" : "CVE-2024-23897" ,
"full_name" : "viszsec\/CVE-2024-23897" ,
"owner" : {
"login" : "viszsec" ,
"id" : 8476317 ,
"avatar_url" : "https:\/\/avatars.githubusercontent.com\/u\/8476317?v=4" ,
"html_url" : "https:\/\/github.com\/viszsec"
} ,
"html_url" : "https:\/\/github.com\/viszsec\/CVE-2024-23897" ,
"description" : "Jenkins POC of Arbitrary file read vulnerability through the CLI can lead to RCE" ,
"fork" : false ,
"created_at" : "2024-01-29T04:41:53Z" ,
2024-01-29 19:26:09 +01:00
"updated_at" : "2024-01-29T13:57:01Z" ,
2024-01-29 07:25:51 +01:00
"pushed_at" : "2024-01-29T04:54:04Z" ,
2024-01-29 19:26:09 +01:00
"stargazers_count" : 1 ,
"watchers_count" : 1 ,
2024-01-29 07:25:51 +01:00
"has_discussions" : false ,
"forks_count" : 0 ,
"allow_forking" : true ,
"is_template" : false ,
"web_commit_signoff_required" : false ,
"topics" : [ ] ,
"visibility" : "public" ,
"forks" : 0 ,
2024-01-29 19:26:09 +01:00
"watchers" : 1 ,
2024-01-29 07:25:51 +01:00
"score" : 0 ,
2024-01-30 07:26:00 +01:00
"subscribers_count" : 1
2024-01-29 13:26:15 +01:00
} ,
{
"id" : 749788968 ,
"name" : "CVE-2024-23897" ,
"full_name" : "jopraveen\/CVE-2024-23897" ,
"owner" : {
"login" : "jopraveen" ,
"id" : 56404692 ,
"avatar_url" : "https:\/\/avatars.githubusercontent.com\/u\/56404692?v=4" ,
"html_url" : "https:\/\/github.com\/jopraveen"
} ,
"html_url" : "https:\/\/github.com\/jopraveen\/CVE-2024-23897" ,
"description" : null ,
"fork" : false ,
"created_at" : "2024-01-29T12:00:25Z" ,
2024-01-29 19:26:09 +01:00
"updated_at" : "2024-01-29T18:02:51Z" ,
2024-01-29 13:26:15 +01:00
"pushed_at" : "2024-01-29T12:14:08Z" ,
2024-01-29 19:26:09 +01:00
"stargazers_count" : 1 ,
"watchers_count" : 1 ,
2024-01-29 13:26:15 +01:00
"has_discussions" : false ,
"forks_count" : 0 ,
"allow_forking" : true ,
"is_template" : false ,
"web_commit_signoff_required" : false ,
"topics" : [ ] ,
"visibility" : "public" ,
"forks" : 0 ,
2024-01-29 19:26:09 +01:00
"watchers" : 1 ,
2024-01-29 13:26:15 +01:00
"score" : 0 ,
2024-01-30 07:26:00 +01:00
"subscribers_count" : 1
2024-01-24 19:36:33 +01:00
}
]