Description
A cross-site request forgery (CSRF) vulnerability in Jenkins Script Security Plugin 1158.v7c1b_73a_69a_08 and earlier allows attackers to have Jenkins send an HTTP request to an attacker-specified webserver.
Affected products
- Jenkins Project / Jenkins Script Security Pluginunspecified – 1158.v7c1b_73a_69a_08
- Jenkins Project / Jenkins Script Security Plugin1.78.1 – 1.78.1
- Jenkins Project / Jenkins Script Security Plugin1145.1148.vf6d17a_a_a_eef6 – 1145.1148.vf6d17a_a_a_eef6