Description
A cross-site request forgery (CSRF) vulnerability in Jenkins Jianliao Notification Plugin 1.1 and earlier allows attackers to send HTTP POST requests to an attacker-specified URL.
Remediation
References
https://www.jenkins.io/security/advisory/2022-06-22/#SECURITY-2240
Related Vulnerabilities
CVE-2022-37435 Vulnerability in maven package org.apache.shenyu:shenyu-admin
CVE-2021-21169 Vulnerability in npm package electron
CVE-2023-32986 Vulnerability in maven package io.jenkins.plugins:file-parameters
CVE-2023-29201 Vulnerability in maven package org.xwiki.commons:xwiki-commons-xml
CVE-2023-24453 Vulnerability in maven package org.jenkins-ci.plugins:testquality-updater