Lucene search

K
cnvdChina National Vulnerability DatabaseCNVD-2022-15203
HistoryFeb 17, 2022 - 12:00 a.m.

Jenkins Chef Sinatra Plugin Access Control Error Vulnerability

2022-02-1700:00:00
China National Vulnerability Database
www.cnvd.org.cn
8

0.001 Low

EPSS

Percentile

42.8%

The Jenkins Plugin is a plug-in that provides appropriate functionality for Jenkins, and the Jenkins Chef Sinatra Plugin is vulnerable to an access control error. An attacker could exploit this vulnerability to allow Jenkins to send HTTP requests to an attacker-controlled URL and have it parse the XML responses.

CPENameOperatorVersion
jenkins chef sinatra pluginle1.20

0.001 Low

EPSS

Percentile

42.8%

Related for CNVD-2022-15203