| CVE ID | Title | Vendor | Product | Severity | CVSS Score | Published At | AI Analysis |
|---|---|---|---|---|---|---|---|
| CVE-2022-4245 | Codehaus-plexus: xml external entity (xxe) injection | Red Hat | RHINT Camel-K-1.10.1 | Medium | 4.3 | 2023-09-25 19:20:57 | Deep Dive |
| CVE-2022-4244 | Codehaus-plexus: directory traversal | Red Hat | RHINT Camel-K-1.10.1 | High | 7.5 | 2023-09-25 19:20:05 | Deep Dive |
| CVE-2023-43502 | Jenkins Plugin Build Failure Analyzer 跨站请求伪造漏洞 | Jenkins Project | Jenkins Build Failure Analyzer Plugin | 中危 | - | 2023-09-20 16:06:14 | Deep Dive |
| CVE-2023-43501 | Jenkins Plugin Build Failure Analyzer 安全漏洞 | Jenkins Project | Jenkins Build Failure Analyzer Plugin | 中危 | - | 2023-09-20 16:06:13 | Deep Dive |
| CVE-2023-43499 | Jenkins Plugin Build Failure Analyzer 跨站脚本漏洞 | Jenkins Project | Jenkins Build Failure Analyzer Plugin | 中危 | - | 2023-09-20 16:06:12 | Deep Dive |
| CVE-2023-43500 | Jenkins Plugin Build Failure Analyzer 跨站请求伪造漏洞 | Jenkins Project | Jenkins Build Failure Analyzer Plugin | 高危 | - | 2023-09-20 16:06:12 | Deep Dive |
| CVE-2023-4853 | Quarkus: http security policy bypass | Red Hat | Openshift Serverless 1 on RHEL 8 | High | 8.1 | 2023-09-20 09:47:32 | Deep Dive |
| CVE-2023-1108 | Undertow: infinite loop in sslconduit during close | - | - | High | 7.5 | 2023-09-14 14:48:59 | Deep Dive |
| CVE-2022-1415 | Drools: unsafe data deserialization in streamutils | Red Hat | RHPAM 7.13.1 async | High | 8.1 | 2023-09-11 20:20:24 | Deep Dive |
| CVE-2023-2974 | Quarkus-core: tls protocol configured with quarkus.http.ssl.protocols is not enforced, client can enforce weaker supported tls protocol | Red Hat | Red Hat build of Quarkus 2.13.8.Final | Medium | 6.5 | 2023-07-04 13:24:30 | Deep Dive |
| CVE-2020-36748 | Dokan <= 3.0.8 - Cross-Site Request Forgery Bypass | dokaninc | Dokan: AI Powered WooCommerce Multivendor Marketplace Solution – Build Your Own Amazon, eBay, Etsy | Medium | 4.3 | 2023-07-01 05:33:29 | Deep Dive |
| CVE-2023-30853 | Gradle Build Action data written to GitHub Actions Cache may expose secrets | gradle | gradle-build-action | High | 7.6 | 2023-04-28 15:10:18 | Deep Dive |
| CVE-2023-25762 | Jenkins Plugin Build Step 跨站脚本漏洞 | Jenkins Project | Jenkins Pipeline: Build Step Plugin | 中危 | - | 2023-02-15 00:00:00 | Deep Dive |
| CVE-2022-3241 | Build App Online < 1.0.19 - Unauthenticated SQL Injection | Unknown | Build App Online | 超危 | - | 2023-01-02 21:49:12 | Deep Dive |
| CVE-2022-46686 | Jenkins Custom Build Properties Plugin 跨站脚本漏洞 | Jenkins Project | Jenkins Custom Build Properties Plugin | 中危 | - | 2022-12-07 00:00:00 | Deep Dive |
| CVE-2022-41232 | Jenkins Build-Publisher Plugin 跨站请求伪造漏洞 | Jenkins project | Jenkins Build-Publisher Plugin | 高危 | - | 2022-09-21 15:45:52 | Deep Dive |
| CVE-2022-41230 | Jenkins Build-Publisher Plugin 安全漏洞 | Jenkins project | Jenkins Build-Publisher Plugin | 中危 | - | 2022-09-21 15:45:51 | Deep Dive |
| CVE-2022-41231 | Jenkins Build-Publisher Plugin 路径遍历漏洞 | Jenkins project | Jenkins Build-Publisher Plugin | 中危 | - | 2022-09-21 15:45:51 | Deep Dive |
| CVE-2020-28423 | Command Injection | - | monorepo-build | Critical | 9.8 | 2022-08-02 13:28:03 | Deep Dive |
| CVE-2022-1474 | WP Event Manager < 3.1.28 - Reflected Cross-Site Scripting | Unknown | WP Event Manager – Easily Build your Calendar of Events! | 中危 | - | 2022-07-11 12:55:45 | Deep Dive |