GHSA-7c3v-2jjv-hq3c
GitHub Security Advisory
Cross-Site Request Forgery in Jenkins Autocomplete Parameter Plugin
✓ GitHub Reviewed
HIGH
Has CVE
Advisory Details
A cross-site request forgery (CSRF) vulnerability in Jenkins Autocomplete Parameter Plugin 1.1 and earlier allows attackers to execute arbitrary code without sandbox protection if the victim is an administrator.
Affected Packages
Maven
org.jenkins-ci.plugins:autocomplete-parameter
Affected versions:
0
(last affected: 1.1)
Related CVEs
Key Information
7.5
/10
Dataset
Last updated: July 5, 2025 6:26 AM
Data from GitHub Advisory Database. This information is provided for research and educational purposes.