Cross-site request forgery (CSRF) vulnerability in the Mailer Plugin 1.20 for Jenkins 2.111 allows remote authenticated users to send unauthorized mail as an arbitrary user via a /descriptorByName/hudson.tasks.Mailer/sendTestMail request.
Metrics
Affected Vendors & Products
Advisories
Source | ID | Title |
---|---|---|
![]() |
EUVD-2022-2788 | Cross-site request forgery (CSRF) vulnerability in the Mailer Plugin 1.20 for Jenkins 2.111 allows remote authenticated users to send unauthorized mail as an arbitrary user via a /descriptorByName/hudson.tasks.Mailer/sendTestMail request. |
![]() |
GHSA-6g57-h38c-q52g | Cross-Site Request Forgery in Jenkins Mailer Plugin |
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
No history.

Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-05T07:02:26.081Z
Reserved: 2018-03-14T00:00:00
Link: CVE-2018-8718

No data.

Status : Modified
Published: 2018-03-27T16:29:00.590
Modified: 2024-11-21T04:14:12.023
Link: CVE-2018-8718


No data.