Description
A cross-site request forgery vulnerability in Jenkins VMware Lab Manager Slaves Plugin in the LabManager.DescriptorImpl#doTestConnection form validation method allows attackers to initiate a connection to an attacker-specified server.
Remediation
References
http://www.securityfocus.com/bid/107790
https://jenkins.io/security/advisory/2019-04-03/#SECURITY-979
Related Vulnerabilities
CVE-2022-39230 Vulnerability in npm package fhir-works-on-aws-authz-smart
CVE-2020-8141 Vulnerability in maven package org.webjars.bowergithub.olado:dot
CVE-2019-10389 Vulnerability in maven package org.jenkins-ci.plugins:relution-publisher
CVE-2022-21231 Vulnerability in npm package deep-get-set
CVE-2022-31198 Vulnerability in npm package @openzeppelin/contracts-upgradeable