Description
A cross-site request forgery (CSRF) vulnerability in Jenkins promoted builds Plugin 3.9 and earlier allows attackers to to promote builds.
Remediation
References
http://www.openwall.com/lists/oss-security/2021/04/07/2
https://www.jenkins.io/security/advisory/2021-04-07/#SECURITY-2293
Related Vulnerabilities
CVE-2020-7627 Vulnerability in npm package node-key-sender
CVE-2022-31367 Vulnerability in npm package strapi
CVE-2020-1936 Vulnerability in maven package org.apache.ambari:ambari-web
CVE-2020-5258 Vulnerability in maven package org.webjars.bower:dojo
CVE-2021-42392 Vulnerability in maven package com.h2database:h2