Jenkins Parameterized Build是Jenkins开源的一个应用软件。接受一个分发包作为参数并对它执行测试。 Jenkins Build With Parameters Plugin 1.5 and earlier 存在跨站脚本漏洞,该漏洞源于不会转义参数名和描述,导致存储的跨站脚本(XSS)漏洞被具有作业配置权限的攻击者利用。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Jenkins project | Jenkins Build With Parameters Plugin | unspecified ~ 1.5 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2021-21638 | Jenkins Team Foundation Server 跨站请求伪造漏洞 | |
| CVE-2021-21637 | Jenkins Team Foundation Server 安全漏洞 | |
| CVE-2021-21636 | Jenkins Team Foundation Server 安全漏洞 | |
| CVE-2021-21635 | Jenkins REST List Parameter 跨站脚本漏洞 | |
| CVE-2021-21634 | Jenkins Jabber (XMPP) notifier and control 安全漏洞 | |
| CVE-2021-21633 | Jenkins OWASP Dependency-Track 跨站请求伪造漏洞 | |
| CVE-2021-21632 | Dependency-Track 安全漏洞 | |
| CVE-2021-21631 | Jenkins Cloud Statistics 安全漏洞 | |
| CVE-2021-21630 | Jenkins Extra Columns 跨站脚本漏洞 | |
| CVE-2021-21629 | Jenkins Build With Parameters Plugin 跨站请求伪造漏洞 |
No comments yet