A cross-site request forgery (CSRF) vulnerability in Jenkins HTMLResource Plugin 1.02 and earlier allows attackers to delete arbitrary files on the Jenkins controller file system.
2023-12-13T18:15:44.233
2024-11-21T08:37:17.330
Modified
CVSSv3.1: 8.1 (HIGH)
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | jenkins | html_resource | 1.01 | Yes |
Application | jenkins | html_resource | 1.02 | Yes |