Description
Parameterized Trigger Plugin fails to check Item/Build permission: The Parameterized Trigger Plugin did not check the build authentication it was running as and allowed triggering any other project in Jenkins.
Remediation
References
https://jenkins.io/security/advisory/2017-07-10/
Related Vulnerabilities
CVE-2022-34207 Vulnerability in maven package org.jenkins-ci.plugins:beaker-builder
CVE-2016-8746 Vulnerability in maven package org.apache.ranger:ranger
CVE-2023-32992 Vulnerability in maven package io.jenkins.plugins:miniorange-saml-sp
CVE-2022-29161 Vulnerability in maven package org.xwiki.platform:xwiki-platform-crypto
CVE-2019-10427 Vulnerability in maven package org.jenkins-ci.plugins:aqua-microscanner