CVE-2022-30946

CVSS v3.1 4.3 (Medium)
43% Progress
CVSS v2.0 4.3 (Medium)
43% Progress
EPSS 0.09 % (39th)
0.09% Progress
Affected Products 1
Advisories 2

A cross-site request forgery (CSRF) vulnerability in Jenkins Script Security Plugin 1158.v7c1b_73a_69a_08 and earlier allows attackers to have Jenkins send an HTTP request to an attacker-specified webserver.

Weaknesses
CWE-352
Cross-Site Request Forgery (CSRF)
CVE Status
PUBLISHED
CNA
Jenkins Project
Published Date
2022-05-17 15:15:08
(2 years ago)
Updated Date
2023-12-22 16:22:05
(9 months ago)

Affected Products

Loading...
Loading...
Loading...

Configuration #1

    CPE23 From Up To
  Jenkins Script Security for Jenkins prior 1172.v35f6a_0b_8207e version cpe:2.3:a:jenkins:script_security::*:*:*:*:jenkins < 1172.v35f6a_0b_8207e
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...