CyberRota Analysis
This is a medium severity vulnerability with a CVSS score of 4.3. It affects Jenkins, Java.
CVE
CVE-2019-1003010
Severity
MEDIUM
CVSS
4.3
EPSS
1.15%
Jenkins Java
Original NVD Description
A cross-site request forgery vulnerability exists in Jenkins Git Plugin 3.9.1 and earlier in src/main/java/hudson/plugins/git/GitTagAction.java that allows attackers to create a Git tag in a workspace and attach corresponding metadata to a build record.
Related CVEs
Other vulnerabilities affecting the same vendor(s)