Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Jenkins AppSpider Plugin 1.0.17 and earlier does not perform a permission check in a method implementing form validation, allowing attackers with Overall/Read permission to connect to an attacker-specified URL.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Jenkins AppSpider Plugin 安全漏洞
Vulnerability Description
Jenkins AppSpider Plugin是Jenkins开源的一个Jenkins应用安全扫描集成插件。 Jenkins AppSpider Plugin 1.0.17及之前版本存在安全漏洞,该漏洞源于在实现表单验证的方法中未执行权限检查,可能导致具有Overall/Read权限的攻击者连接到攻击者指定的URL。
CVSS Information
N/A
Vulnerability Type
N/A