Vulnerabilities (CVE)

Filtered by vendor Jenkins Subscribe
Filtered by product Coverage\/complexity Scatter Plot
Total 2 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2022-28154 1 Jenkins 1 Coverage\/complexity Scatter Plot 2024-11-21 5.5 MEDIUM 8.1 HIGH
Jenkins Coverage/Complexity Scatter Plot Plugin 1.1.1 and earlier does not configure its XML parser to prevent XML external entity (XXE) attacks.
CVE-2020-2265 1 Jenkins 1 Coverage\/complexity Scatter Plot 2024-11-21 3.5 LOW 5.4 MEDIUM
Jenkins Coverage/Complexity Scatter Plot Plugin 1.1.1 and earlier does not escape the method information in tooltips, resulting in a stored cross-site scripting (XSS) vulnerability exploitable by attackers able to provide report files to the plugin's post-build step.