CVE-2019-16550
CVE-2019-16550
Vexday Risk Score
3Low
SSVC decision (CISA)
Track
No exploitation signal → monitor
CVSS —EPSS 0.6%KEV nãoPoC —Nuclei —Metasploit —Patch —
Lifecycle
17 Dec 2019Published on NVD
Recommendation: Monitor — no exploitation signal at the moment.
A cross-site request forgery vulnerability in a connection test form method in Jenkins Maven Release Plugin 0.16.1 and earlier allows attackers to have Jenkins connect to an attacker specified web server and parse XML documents.
Affected products
Jenkins project · Jenkins Maven Release PluginWant to know if your infrastructure is exposed to this?
Talk to TrueHacking →