A cross-site request forgery vulnerability in Jenkins Sounds Plugin 0.5 and earlier allows attacker to execute arbitrary OS commands as the OS user account running Jenkins.
References
https://nvd.nist.gov/vuln/detail/CVE-2020-2098
https://jenkins.io/s…