Jenkins 1.578 Cross Site Request Forgery / Command Execution

Jenkins version 1.578 suffers from cross site request forgery and command execution vulnerabilities.