Description
Jenkins 2.299 and earlier, LTS 2.289.1 and earlier does not invalidate the previous session on login.
Remediation
References
Related Vulnerabilities
Joomla! Core PHP Object Injection (2.5.4 - 3.8.12)
WordPress Plugin Joy Of Text Lite-SMS messaging for WordPress SQL Injection (2.3.0)
WebLogic CVE-2018-3197 Vulnerability (CVE-2018-3197)
WordPress Plugin Under Construction Open Redirect (3.20)
WordPress Plugin Gwolle Guestbook Multiple Vulnerabilities (2.1.0)