Jenkins Team Foundation Server是Jenkins开源的一个应用软件。提供了通过与管道兼容的步骤可用的功能。 Jenkins Team Foundation Server Plugin 5.157.1 and earlier 存在跨站请求伪造漏洞,攻击者可利用该漏洞指定的凭据id连接到指定的URL,捕获存储在Jenkins中的凭据。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Jenkins project | Jenkins Team Foundation Server Plugin | unspecified ~ 5.157.1 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2021-21637 | Jenkins Team Foundation Server 安全漏洞 | |
| CVE-2021-21636 | Jenkins Team Foundation Server 安全漏洞 | |
| CVE-2021-21635 | Jenkins REST List Parameter 跨站脚本漏洞 | |
| CVE-2021-21634 | Jenkins Jabber (XMPP) notifier and control 安全漏洞 | |
| CVE-2021-21633 | Jenkins OWASP Dependency-Track 跨站请求伪造漏洞 | |
| CVE-2021-21632 | Dependency-Track 安全漏洞 | |
| CVE-2021-21631 | Jenkins Cloud Statistics 安全漏洞 | |
| CVE-2021-21630 | Jenkins Extra Columns 跨站脚本漏洞 | |
| CVE-2021-21629 | Jenkins Build With Parameters Plugin 跨站请求伪造漏洞 | |
| CVE-2021-21628 | Jenkins Parameterized Build 跨站脚本漏洞 |
No comments yet