GHSA-pv4m-7c68-f4c5
HIGHCVE-2022-27198A cross-site request forgery (CSRF) vulnerability in Jenkins CloudBees AWS Credentials Plugin 189.v3551d5642995 and earlier allows attackers with Overall/Read permission to connect to an AWS service using an attacker-specified token.
- Affected
- <= 189.v3551d5642995
- Fixed in
- not stated
- Weakness
- CWE-352
- Published
- 2022-03-16
- Source
- github