CVE-2022-34797: CSRF
A cross-site request forgery (CSRF) vulnerability in Jenkins Deployment Dashboard Plugin 1.0.10 and earlier allows attackers to connect to an attacker-specified HTTP URL using attacker-specified credentials.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2022-34797?
CVE-2022-34797 is a cross-site request forgery (CSRF) vulnerability in Jenkins Deployment Dashboard Plugin 1.0.10 and earlier.
How does CVE-2022-34797 impact Jenkins Deployment Dashboard Plugin?
CVE-2022-34797 allows attackers to connect to an attacker-specified HTTP URL using attacker-specified credentials.
Which versions of Jenkins Deployment Dashboard Plugin are affected by CVE-2022-34797?
Jenkins Deployment Dashboard Plugin 1.0.10 and earlier are affected by CVE-2022-34797.
What is the severity of CVE-2022-34797?
CVE-2022-34797 has a severity of medium with a CVSS score of 4.3.
How can I find more information about CVE-2022-34797?
You can find more information about CVE-2022-34797 in the Jenkins security advisory at the following links: [link1](https://www.jenkins.io/security/advisory/2022-06-30/#SECURITY-2798%20(2)) and [link2](https://www.jenkins.io/security/advisory/2022-06-30/#SECURITY-2798%20%282%29).