github / advisory-database

Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
Creative Commons Attribution 4.0 International
1.68k stars 312 forks source link

[GHSA-q5wm-qgxj-h9ph] Missing permission check in Jenkins Kmap Plugin allow SSRF #4473

Closed secjoker closed 2 weeks ago

secjoker commented 1 month ago

Updates

Comments The Package name is incorrect. It is recommended to change it to "org.jenkins-ci.plugins:kmap-jenkins". Reference source: https://mvnrepository.com/artifact/org.jenkins-ci.plugins/kmap-jenkins You can see the Maven coordinates here

darakian commented 1 month ago

Same as the other I believe we already have that name on file https://github.com/advisories/GHSA-q5wm-qgxj-h9ph