Vulnerability Details CVE-2022-34792
A cross-site request forgery (CSRF) vulnerability in Jenkins Recipe Plugin 1.2 and earlier allows attackers to send an HTTP request to an attacker-specified URL and parse the response as XML.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.001
EPSS Ranking 26.8%
CVSS Severity
CVSS v3 Score 8.0
CVSS v2 Score 6.0
Products affected by CVE-2022-34792
-
cpe:2.3:a:jenkins:recipe:1.0
-
cpe:2.3:a:jenkins:recipe:1.1
-
cpe:2.3:a:jenkins:recipe:1.2