CVE-2020-2237: CSRF
Published Aug 12, 2020
·Updated
A cross-site request forgery (CSRF) vulnerability in Jenkins Flaky Test Handler Plugin 1.0.4 and earlier allows attackers to rebuild a project at a previous git revision.
Affected Software
1 affected component
Jenkins Flaky Test Handler<=1.0.4
Event History
Aug 12, 2020
CVE Published
via MITRE·01:25 PM
Data Sourced
via MITRE·01:25 PM
Description
Frequently Asked Questions
1
What is CVE-2020-2237?
CVE-2020-2237 is a cross-site request forgery (CSRF) vulnerability in Jenkins Flaky Test Handler Plugin 1.0.4 and earlier.
2
How does CVE-2020-2237 affect Jenkins Flaky Test Handler Plugin?
CVE-2020-2237 allows attackers to rebuild a project at a previous git revision.
3
What is the severity of CVE-2020-2237?
The severity of CVE-2020-2237 is medium with a CVSS score of 4.3.
4
What is the Common Weakness Enumeration (CWE) for CVE-2020-2237?
The CWE for CVE-2020-2237 is CWE-352: Cross-Site Request Forgery (CSRF).
5
How do I fix CVE-2020-2237 in Jenkins Flaky Test Handler Plugin?
To fix CVE-2020-2237, upgrade Jenkins Flaky Test Handler Plugin to version 1.0.5 or later.