Vulnerability Details CVE-2023-39156
A cross-site request forgery (CSRF) vulnerability in Jenkins Bazaar Plugin 1.22 and earlier allows attackers to delete previously created Bazaar SCM tags.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.001
EPSS Ranking 18.8%
CVSS Severity
CVSS v3 Score 5.3
Products affected by CVE-2023-39156
-
cpe:2.3:a:jenkins:bazaar:-
-
cpe:2.3:a:jenkins:bazaar:1.10
-
cpe:2.3:a:jenkins:bazaar:1.11
-
cpe:2.3:a:jenkins:bazaar:1.12
-
cpe:2.3:a:jenkins:bazaar:1.13
-
cpe:2.3:a:jenkins:bazaar:1.14
-
cpe:2.3:a:jenkins:bazaar:1.15
-
cpe:2.3:a:jenkins:bazaar:1.16
-
cpe:2.3:a:jenkins:bazaar:1.17
-
cpe:2.3:a:jenkins:bazaar:1.18
-
cpe:2.3:a:jenkins:bazaar:1.19
-
cpe:2.3:a:jenkins:bazaar:1.20
-
cpe:2.3:a:jenkins:bazaar:1.21
-
cpe:2.3:a:jenkins:bazaar:1.22
-
cpe:2.3:a:jenkins:bazaar:1.9