CVE-2022-25194

Cross-Site Request Forgery (CSRF) in maven/io.jenkins.plugins/autonomiq

Identifiers

GHSA-g5wh-fw4m-2v28, CVE-2022-25194

Package Slug

maven/io.jenkins.plugins/autonomiq

Vulnerability

Cross-Site Request Forgery (CSRF)

Description

A cross-site request forgery (CSRF) vulnerability in Jenkins autonomiq Plugin 1.15 and earlier allows attackers to connect to an attacker-specified URL server using attacker-specified credentials.

Affected Versions

All versions before 1.16

Solution

Upgrade to version 1.16 or above.

Last Modified

2022-05-05

source