Jenkins Lucene-Search Plugin 387.v938a_ecb_f7fe9 and previous versions does not require POST requests for an HTTP endpoint, allowing malicious users to reindex the database.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
jenkins lucene-search |