Vulnerabilities (CVE)

Filtered by vendor Jenkins Subscribe
Filtered by product Nested View
Total 2 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2022-34182 1 Jenkins 1 Nested View 2024-11-21 4.3 MEDIUM 6.1 MEDIUM
Jenkins Nested View Plugin 1.20 through 1.25 (both inclusive) does not escape search parameters, resulting in a reflected cross-site scripting (XSS) vulnerability.
CVE-2021-21680 1 Jenkins 1 Nested View 2024-11-21 5.5 MEDIUM 7.1 HIGH
Jenkins Nested View Plugin 1.20 and earlier does not configure its XML transformer to prevent XML external entity (XXE) attacks.