Количество 2
Количество 2
CVE-2020-2196
больше 5 лет назад
Jenkins Selenium Plugin 3.141.59 and earlier has no CSRF protection for its HTTP endpoints, allowing attackers to perform all administrative actions provided by the plugin.
CVSS3: 8
EPSS: Низкий
GHSA-rp4x-xpgf-4xv7
больше 3 лет назад
Complete lack of CSRF protection in Jenkins Selenium Plugin can lead to OS command injection
CVSS3: 7.1
EPSS: Низкий
Уязвимостей на страницу
20
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2020-2196 Jenkins Selenium Plugin 3.141.59 and earlier has no CSRF protection for its HTTP endpoints, allowing attackers to perform all administrative actions provided by the plugin. | CVSS3: 8 | 0% Низкий | больше 5 лет назад | |
GHSA-rp4x-xpgf-4xv7 Complete lack of CSRF protection in Jenkins Selenium Plugin can lead to OS command injection | CVSS3: 7.1 | 0% Низкий | больше 3 лет назад |
Уязвимостей на страницу
20