A cross-site request forgery (CSRF) vulnerability in Jenkins NeuVector Vulnerability Scanner Plugin 1.22 and earlier allows attackers to connect to an attacker-specified hostname and port using attacker-specified username and password.
2023-11-29T14:15:07.707
2024-11-21T08:33:40.857
Modified
CVSSv3.1: 8.8 (HIGH)
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | jenkins | neuvector_vulnerability_scanner | < 2.2 | Yes |
Application | jenkins | jira | < 3.1.2 | Yes |
Application | jenkins | google_compute_engine | < 4.551.0 | Yes |
Application | jenkins | matlab | < 2.11.1 | Yes |