Vulnerabilities
Vulnerable Software
Jenkins:  >> Jx Resources  Security Vulnerabilities
A cross-site request forgery vulnerability in Jenkins JX Resources Plugin 1.0.36 and earlier in GlobalPluginConfiguration#doValidateClient allowed attackers to have Jenkins connect to an attacker-specified Kubernetes server, potentially leaking credentials.
CVSS Score
8.8
EPSS Score
0.001
Published
2019-06-11
A missing permission check in Jenkins JX Resources Plugin 1.0.36 and earlier in GlobalPluginConfiguration#doValidateClient allowed users with Overall/Read access to have Jenkins connect to an attacker-specified Kubernetes server, potentially leaking credentials.
CVSS Score
8.8
EPSS Score
0.001
Published
2019-06-11


Contact Us

Shodan ® - All rights reserved