CVE-2022-28138

Publication date

2022-03-29 12:30:51

Family

jenkins

State

PUBLISHED

Description

A cross-site request forgery (CSRF) vulnerability in Jenkins RocketChat Notifier Plugin 1.4.10 and earlier allows attackers to connect to an attacker-specified URL using attacker-specified credential.