CVE-2023-32998
CVSS v3.1
8.8 (High)
EPSS
0.09 % (39th)
Affected Products
1
Advisories
2
A cross-site request forgery (CSRF) vulnerability in Jenkins AppSpider Plugin 1.0.15 and earlier allows attackers to connect to an attacker-specified URL and send an HTTP POST request with a JSON payload consisting of attacker-specified credentials.
Weaknesses
- CWE-352
- Cross-Site Request Forgery (CSRF)
- CVE Status
- PUBLISHED
- CNA
- Jenkins Project
- Published Date
-
2023-05-16 17:15:12
(16 months ago) - Updated Date
-
2023-05-30 14:36:31
(15 months ago)
Affected Products
Loading...
Loading...
Loading...
Configuration #1
|
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...