Lucene search

K
prionPRIOn knowledge basePRION:CVE-2022-30972
HistoryMay 17, 2022 - 3:15 p.m.

Cross site request forgery (csrf)

2022-05-1715:15:00
PRIOn knowledge base
www.prio-n.com
5

8.6 High

AI Score

Confidence

High

0.001 Low

EPSS

Percentile

32.3%

A cross-site request forgery (CSRF) vulnerability in Jenkins Storable Configs Plugin 1.0 and earlier allows attackers to have Jenkins parse a local XML file (e.g., archived artifacts) that uses external entities for extraction of secrets from the Jenkins controller or server-side request forgery.

CPENameOperatorVersion
storage_configsle1.0

8.6 High

AI Score

Confidence

High

0.001 Low

EPSS

Percentile

32.3%

Related for PRION:CVE-2022-30972