Total vulnerabilities in the database
A cross-site request forgery (CSRF) vulnerability in Jenkins Blue Ocean Plugin 1.27.5 and earlier allows attackers to connect to an attacker-specified URL, capturing GitHub credentials associated with an attacker-specified job.
Software | From | Fixed in |
---|---|---|
![]() |
- | 1.27.5.1 |
jenkins / blue_ocean | - | 1.27.5.x |