Количество 2
Количество 2
CVE-2024-28160
почти 2 года назад
Jenkins iceScrum Plugin 1.1.6 and earlier does not sanitize iceScrum project URLs on build views, resulting in a stored cross-site scripting (XSS) vulnerability exploitable by attackers able to configure jobs.
CVSS3: 8.8
EPSS: Низкий
GHSA-2pc2-h97h-2mmw
почти 2 года назад
Jenkins iceScrum Plugin vulnerable to stored Cross-site Scripting
CVSS3: 8
EPSS: Низкий
Уязвимостей на страницу
20
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2024-28160 Jenkins iceScrum Plugin 1.1.6 and earlier does not sanitize iceScrum project URLs on build views, resulting in a stored cross-site scripting (XSS) vulnerability exploitable by attackers able to configure jobs. | CVSS3: 8.8 | 0% Низкий | почти 2 года назад | |
GHSA-2pc2-h97h-2mmw Jenkins iceScrum Plugin vulnerable to stored Cross-site Scripting | CVSS3: 8 | 0% Низкий | почти 2 года назад |
Уязвимостей на страницу
20