Description
A cross-site request forgery (CSRF) vulnerability in Jenkins Bazaar Plugin 1.22 and earlier allows attackers to delete previously created Bazaar SCM tags.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2023-1977 | A cross-site request forgery (CSRF) vulnerability in Jenkins Bazaar Plugin 1.22 and earlier allows attackers to delete previously created Bazaar SCM tags. |
Github GHSA |
GHSA-6f4q-f5fj-q6fc | CSRF vulnerability in Bazaar Plugin |
References
History
Thu, 24 Oct 2024 15:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: jenkins
Published:
Updated: 2024-10-23T14:42:55.330Z
Reserved: 2023-07-25T11:16:13.336Z
Link: CVE-2023-39156
Updated: 2024-08-02T18:02:06.510Z
Status : Modified
Published: 2023-07-26T14:15:10.750
Modified: 2026-06-17T06:11:38.893
Link: CVE-2023-39156
No data.
OpenCVE Enrichment
No data.
Weaknesses
-
CWE-352
Cross-Site Request Forgery (CSRF)
EUVD
Github GHSA