Количество 2
Количество 2
CVE-2023-30520
Jenkins Quay.io trigger Plugin 0.1 and earlier does not limit URL schemes for repository homepage URLs submitted via Quay.io trigger webhooks, resulting in a stored cross-site scripting (XSS) vulnerability exploitable by attackers able to submit crafted Quay.io trigger webhook payloads.
GHSA-2jgw-28qh-6mg8
Jenkins Quay.io trigger Plugin Cross-site Scripting vulnerability
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2023-30520 Jenkins Quay.io trigger Plugin 0.1 and earlier does not limit URL schemes for repository homepage URLs submitted via Quay.io trigger webhooks, resulting in a stored cross-site scripting (XSS) vulnerability exploitable by attackers able to submit crafted Quay.io trigger webhook payloads. | CVSS3: 5.4 | 2% Низкий | почти 3 года назад | |
GHSA-2jgw-28qh-6mg8 Jenkins Quay.io trigger Plugin Cross-site Scripting vulnerability | CVSS3: 8.8 | 2% Низкий | почти 3 года назад |
Уязвимостей на страницу