Количество 2
Количество 2
CVE-2022-34786
больше 3 лет назад
Jenkins Rich Text Publisher Plugin 1.4 and earlier does not escape the HTML message set by its post-build step, resulting in a stored cross-site scripting (XSS) vulnerability exploitable by attackers able to configure jobs.
CVSS3: 5.4
EPSS: Средний
GHSA-2v6r-jf2g-j5q5
больше 3 лет назад
Cross-site Scripting in Jenkins Rich Text Publisher Plugin
CVSS3: 8
EPSS: Средний
Уязвимостей на страницу
20
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2022-34786 Jenkins Rich Text Publisher Plugin 1.4 and earlier does not escape the HTML message set by its post-build step, resulting in a stored cross-site scripting (XSS) vulnerability exploitable by attackers able to configure jobs. | CVSS3: 5.4 | 14% Средний | больше 3 лет назад | |
GHSA-2v6r-jf2g-j5q5 Cross-site Scripting in Jenkins Rich Text Publisher Plugin | CVSS3: 8 | 14% Средний | больше 3 лет назад |
Уязвимостей на страницу
20