A cross-site request forgery (CSRF) vulnerability in Jenkins ThreadFix Plugin 1.5.4 and previous versions allows malicious users to connect to an attacker-specified URL.
jenkins threadfix