Description
A cross-site request forgery (CSRF) vulnerability in Jenkins AWS CodeCommit Trigger Plugin 3.0.12 and earlier allows attackers to clear the SQS queue.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2023-2477 | A cross-site request forgery (CSRF) vulnerability in Jenkins AWS CodeCommit Trigger Plugin 3.0.12 and earlier allows attackers to clear the SQS queue. |
Github GHSA |
GHSA-997j-37h7-mhg9 | CSRF vulnerability in Jenkins AWS CodeCommit Trigger Plugin |
References
History
Thu, 26 Sep 2024 20:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: jenkins
Published:
Updated: 2024-09-26T19:52:30.978Z
Reserved: 2023-09-05T16:39:57.394Z
Link: CVE-2023-41942
Updated: 2024-08-02T19:09:49.382Z
Status : Modified
Published: 2023-09-06T13:15:11.217
Modified: 2024-11-21T08:21:58.103
Link: CVE-2023-41942
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD
Github GHSA