Количество 2
Количество 2
CVE-2022-38664
около 3 лет назад
Jenkins Job Configuration History Plugin 1165.v8cc9fd1f4597 and earlier does not escape the job name on the System Configuration History page, resulting in a stored cross-site scripting (XSS) vulnerability exploitable by attackers able to configure job names.
CVSS3: 5.4
EPSS: Средний
GHSA-28w4-h56g-grg7
около 3 лет назад
Cross-site Scripting in Jenkins Job Configuration History Plugin
CVSS3: 5.4
EPSS: Средний
Уязвимостей на страницу
20
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2022-38664 Jenkins Job Configuration History Plugin 1165.v8cc9fd1f4597 and earlier does not escape the job name on the System Configuration History page, resulting in a stored cross-site scripting (XSS) vulnerability exploitable by attackers able to configure job names. | CVSS3: 5.4 | 16% Средний | около 3 лет назад | |
GHSA-28w4-h56g-grg7 Cross-site Scripting in Jenkins Job Configuration History Plugin | CVSS3: 5.4 | 16% Средний | около 3 лет назад |
Уязвимостей на страницу
20