PT-2022-27495 · Jenkins · Jenkins Delete Log Plugin+1

Cc Bomber

·

Published

2022-11-15

·

Updated

2025-04-30

·

CVE-2022-45393

CVSS v3.1

5.7

Medium

VectorAV:N/AC:L/PR:L/UI:R/S:U/C:N/I:H/A:N
Name of the Vulnerable Software and Affected Versions Jenkins Delete log Plugin versions 1.0 and earlier
Description A cross-site request forgery (CSRF) issue allows attackers to delete build logs.
Recommendations For Jenkins Delete log Plugin versions 1.0 and earlier, consider disabling the plugin until a patch is available to prevent exploitation.

Fix

CSRF

Weakness Enumeration

Related Identifiers

CVE-2022-45393
GHSA-HW4F-G7WH-XP52

Affected Products

Jenkins
Jenkins Delete Log Plugin