1.10.4
8 years ago
6 years ago
Known vulnerabilities in the @jenkins-cd/blueocean-core-js package. This does not include vulnerabilities belonging to this package’s dependencies.
Automatically find and fix vulnerabilities affecting your projects. Snyk scans for vulnerabilities and provides fixes for free.
Fix for freeVulnerability | Vulnerable Version |
---|---|
@jenkins-cd/blueocean-core-js is a Shared JavaScript libraries for use with Jenkins Blue Ocean Affected versions of this package are vulnerable to Cross-site Request Forgery (CSRF) when it didn't require CSRF tokens ("crumbs") for POST requests with the How to fix Cross-site Request Forgery (CSRF)? A fix was pushed into the | <1.10.2 |