GHSA-v535-pc6r-77qh, CVE-2022-45385
maven/org.jenkins-ci.plugins/dockerhub-notification
Missing Authorization
A missing permission check in Jenkins CloudBees Docker Hub/Registry Notification Plugin 2.6.2 and earlier allows unauthenticated attackers to trigger builds of jobs corresponding to the attacker-specified repository.
All versions up to 2.6.2
Unfortunately, there is no solution available yet.
2022-11-22
source |