Vulnerabilities > Jenkins > Cluster Statistics > 0.4.6

DATE CVE VULNERABILITY TITLE RISK
2022-11-15 CVE-2022-45398 Cross-Site Request Forgery (CSRF) vulnerability in Jenkins Cluster Statistics 0.4.6
A cross-site request forgery (CSRF) vulnerability in Jenkins Cluster Statistics Plugin 0.4.6 and earlier allows attackers to delete recorded Jenkins Cluster Statistics.
network
low complexity
jenkins CWE-352
4.3
2022-11-15 CVE-2022-45399 Missing Authorization vulnerability in Jenkins Cluster Statistics 0.4.6
A missing permission check in Jenkins Cluster Statistics Plugin 0.4.6 and earlier allows attackers to delete recorded Jenkins Cluster Statistics.
network
low complexity
jenkins CWE-862
4.3