Количество 5
Количество 5
CVE-2020-2162
Jenkins 2.227 and earlier, LTS 2.204.5 and earlier does not set Content-Security-Policy headers for files uploaded as file parameters to a build, resulting in a stored XSS vulnerability.
CVE-2020-2162
Jenkins 2.227 and earlier, LTS 2.204.5 and earlier does not set Content-Security-Policy headers for files uploaded as file parameters to a build, resulting in a stored XSS vulnerability.
CVE-2020-2162
Jenkins 2.227 and earlier, LTS 2.204.5 and earlier does not set Conten ...
GHSA-crg2-6xv3-qg5f
Improper Neutralization of Input During Web Page Generation in Jenkins
BDU:2020-02698
Уязвимость сервера автоматизации Jenkins, связанная с отсутствием HTTP-заголовков Content-Security-Policy, позволяющая нарушителю осуществлять межсайтовые сценарные атаки (XSS)
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2020-2162 Jenkins 2.227 and earlier, LTS 2.204.5 and earlier does not set Content-Security-Policy headers for files uploaded as file parameters to a build, resulting in a stored XSS vulnerability. | CVSS3: 5.4 | 0% Низкий | почти 6 лет назад | |
CVE-2020-2162 Jenkins 2.227 and earlier, LTS 2.204.5 and earlier does not set Content-Security-Policy headers for files uploaded as file parameters to a build, resulting in a stored XSS vulnerability. | CVSS3: 5.4 | 0% Низкий | почти 6 лет назад | |
CVE-2020-2162 Jenkins 2.227 and earlier, LTS 2.204.5 and earlier does not set Conten ... | CVSS3: 5.4 | 0% Низкий | почти 6 лет назад | |
GHSA-crg2-6xv3-qg5f Improper Neutralization of Input During Web Page Generation in Jenkins | CVSS3: 5.4 | 0% Низкий | больше 3 лет назад | |
BDU:2020-02698 Уязвимость сервера автоматизации Jenkins, связанная с отсутствием HTTP-заголовков Content-Security-Policy, позволяющая нарушителю осуществлять межсайтовые сценарные атаки (XSS) | CVSS3: 5.4 | 0% Низкий | почти 6 лет назад |
Уязвимостей на страницу