Vulnerabilities (CVE)

Filtered by vendor Jenkins Subscribe
Filtered by product Xpath Configuration Viewer
Total 3 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2022-34811 1 Jenkins 1 Xpath Configuration Viewer 2024-02-28 4.0 MEDIUM 4.3 MEDIUM
A missing permission check in Jenkins XPath Configuration Viewer Plugin 1.1.1 and earlier allows attackers with Overall/Read permission to access the XPath Configuration Viewer page.
CVE-2022-34813 1 Jenkins 1 Xpath Configuration Viewer 2024-02-28 4.0 MEDIUM 4.3 MEDIUM
A missing permission check in Jenkins XPath Configuration Viewer Plugin 1.1.1 and earlier allows attackers with Overall/Read permission to create and delete XPath expressions.
CVE-2022-34812 1 Jenkins 1 Xpath Configuration Viewer 2024-02-28 4.3 MEDIUM 4.3 MEDIUM
A cross-site request forgery (CSRF) vulnerability in Jenkins XPath Configuration Viewer Plugin 1.1.1 and earlier allows attackers to create and delete XPath expressions.