Jenkins

Junit

5 vulnerabilities found.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.82%
  • Published 15.02.2023 14:15:13
  • Last modified 19.03.2025 16:15:21

Jenkins JUnit Plugin 1166.va_436e268e972 and earlier does not escape test case class names in JavaScript expressions, resulting in a stored cross-site scripting (XSS) vulnerability exploitable by attackers able to control test case class names in the...

  • EPSS 1.22%
  • Published 15.11.2022 20:15:11
  • Last modified 30.04.2025 15:15:59

Jenkins JUnit Plugin 1159.v0b_396e1e07dd and earlier converts HTTP(S) URLs in test report output to clickable links in an unsafe manner, resulting in a stored cross-site scripting (XSS) vulnerability exploitable by attackers with Item/Configure permi...

  • EPSS 59%
  • Published 23.06.2022 17:15:15
  • Last modified 21.11.2024 07:09:00

Jenkins JUnit Plugin 1119.va_a_5e9068da_d7 and earlier does not escape descriptions of test results, resulting in a stored cross-site scripting (XSS) vulnerability exploitable by attackers with Run/Update permission.

  • EPSS 0.39%
  • Published 09.01.2019 23:29:02
  • Last modified 21.11.2024 03:40:00

A cross-site request forgery vulnerability exists in Jenkins JUnit Plugin 1.25 and earlier in TestObject.java that allows setting the description of a test result.

  • EPSS 0.15%
  • Published 09.02.2018 23:29:02
  • Last modified 21.11.2024 03:39:32

Jenkins JUnit Plugin 1.23 and earlier processes XML external entities in files it parses as part of the build process, allowing attackers with user permissions in Jenkins to extract secrets from the Jenkins master, perform server-side request forgery...