Description
A cross-site request forgery (CSRF) vulnerability in Jenkins Cluster Statistics Plugin 0.4.6 and earlier allows attackers to delete recorded Jenkins Cluster Statistics.
Remediation
References
https://www.jenkins.io/security/advisory/2022-11-15/#SECURITY-2938
http://www.openwall.com/lists/oss-security/2022/11/15/4
Related Vulnerabilities
CVE-2023-49652 Vulnerability in maven package org.jenkins-ci.plugins:google-compute-engine
CVE-2022-26850 Vulnerability in maven package org.apache.nifi:nifi-single-user-utils
CVE-2016-4438 Vulnerability in maven package org.apache.struts:struts2-rest-plugin
CVE-2019-16303 Vulnerability in npm package generator-jhipster-kotlin