Security Advisory

CVE-2022-20612

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2022-01-12 19:05:44
Last updated 2024-08-03 02:17:53
Assigner jenkins
State PUBLISHED

Description

A cross-site request forgery (CSRF) vulnerability in Jenkins 2.329 and earlier, LTS 2.319.1 and earlier allows attackers to trigger build of job without parameters when no security realm is set.