CVE-2019-10359
A cross-site request forgery vulnerability in Jenkins Maven Release Plugin 0.14.0 and earlier in the M2ReleaseAction#doSubmit method allowed attackers to perform releases with attacker-specified options.
Date published : 2019-07-31
https://jenkins.io/security/advisory/2019-07-31/#SECURITY-1098