A cross-site request forgery vulnerability exists in Jenkins Config File Provider Plugin 3.1 and previous versions in ConfigFilesManagement.java, FolderConfigFileAction.java that allows creating and editing configuration file definitions.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
jenkins config file provider |