CVE-2019-10293

Missing Authorization in maven/rg.jenkins-ci.plugins/kmap-jenkins

Identifiers

GHSA-q5wm-qgxj-h9ph, CVE-2019-10293

Package Slug

maven/rg.jenkins-ci.plugins/kmap-jenkins

Vulnerability

Missing Authorization

Description

A missing permission check in Jenkins Kmap Plugin in KmapJenkinsBuilder.DescriptorImpl form validation methods allows attackers with Overall/Read permission to initiate a connection to an attacker-specified server.

Affected Versions

Version 1.6

Solution

Unfortunately, there is no solution available yet.

Last Modified

2024-01-31

source