296,746
Total vulnerabilities in the database
A cross-site request forgery (CSRF) vulnerability in Jenkins Blue Ocean Plugin 1.27.5 and earlier allows attackers to connect to an attacker-specified URL, capturing GitHub credentials associated with an attacker-specified job.
| Software | From | Fixed in |
|---|---|---|
io.jenkins.blueocean / blueocean
|
- | 1.27.5.1 |
| jenkins / blue_ocean | - | 1.27.5.x |