Description
A cross-site request forgery vulnerability in Jenkins Sounds Plugin 0.5 and earlier allows attacker to execute arbitrary OS commands as the OS user account running Jenkins.
Remediation
References
https://jenkins.io/security/advisory/2020-01-15/#SECURITY-814
Related Vulnerabilities
CVE-2023-4759 Vulnerability in maven package org.eclipse.jgit:org.eclipse.jgit
CVE-2022-31679 Vulnerability in maven package org.springframework.data:spring-data-rest-webmvc
CVE-2011-3389 Vulnerability in npm package faye
CVE-2017-1000242 Vulnerability in maven package org.jenkins-ci.plugins:git-client