Описание
CSRF vulnerability in Jenkins Sounds Plugin allow OS command execution
A cross-site request forgery vulnerability in Jenkins Sounds Plugin 0.5 and earlier allows attacker to execute arbitrary OS commands as the OS user account running Jenkins.
Пакеты
Наименование
org.jenkins-ci.plugins:sounds
maven
Затронутые версииВерсия исправления
< 0.6
0.6
Связанные уязвимости
CVSS3: 8.8
nvd
около 6 лет назад
A cross-site request forgery vulnerability in Jenkins Sounds Plugin 0.5 and earlier allows attacker to execute arbitrary OS commands as the OS user account running Jenkins.