Jenkins

Matrix Reloaded

2 vulnerabilities found.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 14.25%
  • Published 30.06.2022 18:15:11
  • Last modified 21.11.2024 07:10:11

Jenkins Matrix Reloaded Plugin 1.1.3 and earlier does not escape the agent name in tooltips, resulting in a stored cross-site scripting (XSS) vulnerability exploitable by attackers with Agent/Configure permission.

  • EPSS 0.08%
  • Published 30.06.2022 18:15:11
  • Last modified 21.11.2024 07:10:11

A cross-site request forgery (CSRF) vulnerability in Jenkins Matrix Reloaded Plugin 1.1.3 and earlier allows attackers to rebuild previous matrix builds.