VYPR

Maven package

org.zeroturnaround/cluster-stats

pkg:maven/org.zeroturnaround/cluster-stats

Vulnerabilities (2)

  • CVE-2022-45399Nov 15, 2022
    affected <= 0.4.6

    A missing permission check in Jenkins Cluster Statistics Plugin 0.4.6 and earlier allows attackers to delete recorded Jenkins Cluster Statistics.

  • CVE-2022-45398Nov 15, 2022
    affected <= 0.4.6

    A cross-site request forgery (CSRF) vulnerability in Jenkins Cluster Statistics Plugin 0.4.6 and earlier allows attackers to delete recorded Jenkins Cluster Statistics.