Description
A cross-site request forgery (CSRF) vulnerability in Jenkins Ivy Plugin 2.5 and earlier allows attackers to delete disabled modules.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2023-2440 | A cross-site request forgery (CSRF) vulnerability in Jenkins Ivy Plugin 2.5 and earlier allows attackers to delete disabled modules. |
Github GHSA |
GHSA-63vw-rprv-4f8j | CSRF vulnerability in Jenkins Ivy Plugin |
References
History
Thu, 26 Sep 2024 20:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: jenkins
Published:
Updated: 2024-09-26T19:53:22.647Z
Reserved: 2023-09-05T16:39:57.392Z
Link: CVE-2023-41938
Updated: 2024-08-02T19:09:49.178Z
Status : Modified
Published: 2023-09-06T13:15:10.660
Modified: 2024-11-21T08:21:57.540
Link: CVE-2023-41938
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD
Github GHSA