Jenkins

Health Advisor By Cloudbees

4 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.05%
  • Veröffentlicht 14.05.2025 20:35:55
  • Zuletzt bearbeitet 12.06.2025 13:47:54

Jenkins Health Advisor by CloudBees Plugin 374.v194b_d4f0c8c8 and earlier does not escape responses from the Jenkins Health Advisor server, resulting in a stored cross-site scripting (XSS) vulnerability exploitable by attackers able to control Jenkin...

  • EPSS 0.03%
  • Veröffentlicht 16.09.2020 14:15:13
  • Zuletzt bearbeitet 21.11.2024 05:25:07

Jenkins Health Advisor by CloudBees Plugin 3.2.0 and earlier does not correctly perform a permission check in an HTTP endpoint, allowing attackers with Overall/Read permission to view that HTTP endpoint.

  • EPSS 0.09%
  • Veröffentlicht 15.01.2020 16:15:14
  • Zuletzt bearbeitet 21.11.2024 05:24:35

A cross-site request forgery vulnerability in Jenkins Health Advisor by CloudBees Plugin 3.0 and earlier allows attackers to send an email with fixed content to an attacker-specified recipient.

  • EPSS 0.09%
  • Veröffentlicht 15.01.2020 16:15:14
  • Zuletzt bearbeitet 21.11.2024 05:24:35

A missing permission check in Jenkins Health Advisor by CloudBees Plugin 3.0 and earlier allows attackers with Overall/Read permission to send a fixed email to an attacker-specific recipient.