CVE-2025-47886: CSRF
A cross-site request forgery (CSRF) vulnerability in Jenkins Cadence vManager Plugin 4.0.1-286.v9e25a740ba48 and earlier allows attackers to connect to an attacker-specified URL using attacker-specified username and password.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-47886?
CVE-2025-47886 is classified as a medium severity vulnerability due to its potential for cross-site request forgery which could lead to unauthorized actions.
How do I fix CVE-2025-47886?
To fix CVE-2025-47886, users should upgrade to a version of Jenkins Cadence vManager Plugin later than 4.0.1-286.v9e25a_740b_a_48.
What systems are affected by CVE-2025-47886?
CVE-2025-47886 affects Jenkins Cadence vManager Plugin versions 4.0.1-286.v9e25a_740b_a_48 and earlier.
What type of vulnerability is CVE-2025-47886?
CVE-2025-47886 is a cross-site request forgery (CSRF) vulnerability.
What can attackers do with CVE-2025-47886?
Attackers exploiting CVE-2025-47886 can connect to an attacker-specified URL using attacker-specified credentials.