CVE-2018-1000606
26.06.2018, 17:29
A server-side request forgery vulnerability exists in Jenkins URLTrigger Plugin 0.41 and earlier in URLTrigger.java that allows attackers with Overall/Read access to cause Jenkins to send a GET request to a specified URL.
Vendor | Product | Version |
---|---|---|
jenkins | urltrigger | 𝑥 ≤ 0.41 |
𝑥
= Vulnerable software versions