GHSA-g3rg-cj5x-3vpf, CVE-2019-10278
maven/org.jenkins-ci.plugins/jenkins-reviewbot
Cross-Site Request Forgery (CSRF)
A cross-site request forgery vulnerability in Jenkins jenkins-reviewbot Plugin in the ReviewboardDescriptor#doTestConnection form validation method allows attackers to initiate a connection to an attacker-specified server.
All versions up to 2.4.6
Unfortunately, there is no solution available yet.
2024-01-31
source |