Security Advisory

CVE-2018-1000606

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2018-06-26 17:00:00
Last updated 2024-09-17 03:59:21
Assigner mitre
State PUBLISHED

Description

A server-side request forgery vulnerability exists in Jenkins URLTrigger Plugin 0.41 and earlier in URLTrigger.java that allows attackers with Overall/Read access to cause Jenkins to send a GET request to a specified URL.