cve,link,title,description,vendor,products,score,severity,epss,cisa,cisa_published,article,ransomware,exploited,exploited_date,poc,trended,trended_no_1,trended_no_1_date,published,trended_score CVE-2022-45398,https://securityvulnerability.io/vulnerability/CVE-2022-45398,Cross-Site Request Forgery Vulnerability in Jenkins Cluster Statistics Plugin by Jenkins,"A cross-site request forgery vulnerability exists in the Jenkins Cluster Statistics Plugin version 0.4.6 and earlier. This flaw allows an attacker to delete recorded Jenkins Cluster Statistics without proper authorization, potentially leading to loss of critical data and disrupting Jenkins operations. Users of the affected versions are advised to implement necessary security measures and update to patched versions to mitigate risks.",Jenkins,Jenkins Cluster Statistics Plugin,4.3,MEDIUM,0.0005799999926239252,false,,false,false,false,,,false,false,,2022-11-15T00:00:00.000Z,0 CVE-2022-45399,https://securityvulnerability.io/vulnerability/CVE-2022-45399,Missing Permission Check in Jenkins Cluster Statistics Plugin by Jenkins,"The Jenkins Cluster Statistics Plugin, up to version 0.4.6, is vulnerable due to a missing permission check that permits unauthorized attackers to delete recorded statistics. This flaw could lead to loss of critical cluster data and impact overall Jenkins performance. It is crucial for users to update to the latest version to mitigate this risk. For further details, refer to the security advisory linked.",Jenkins,Jenkins Cluster Statistics Plugin,4.3,MEDIUM,0.0005000000237487257,false,,false,false,false,,,false,false,,2022-11-15T00:00:00.000Z,0