ZeroHour

CVE-2023-50774

CVSS 3.1
8.1 high
EPSS
<1%p41
Published
()
Modified
Description

A cross-site request forgery (CSRF) vulnerability in Jenkins HTMLResource Plugin 1.02 and earlier allows attackers to delete arbitrary files on the Jenkins controller file system.

Vendors
jenkins
Products
html resource
Weakness
CWE-352
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:H/A:H

In the news

No ingested article mentions this CVE yet.