Jenkins Project Jenkins Warnings Plugin vulnerabilities
2 known vulnerabilities affecting jenkins_project/jenkins_warnings_plugin.
Total CVEs
2
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
HIGH2
Vulnerabilities
Page 1 of 1
CVE-2020-2280HIGHCVSS 8.8≥ unspecified, ≤ 5.0.12020-09-23
CVE-2020-2280 [HIGH] CWE-352 CVE-2020-2280: A cross-site request forgery (CSRF) vulnerability in Jenkins Warnings Plugin 5.0.1 and earlier allow
A cross-site request forgery (CSRF) vulnerability in Jenkins Warnings Plugin 5.0.1 and earlier allows attackers to execute arbitrary code.
cvelistv5nvd
CVE-2019-1003007HIGHCVSS 8.8v5.0.0 and earlier2019-02-06
CVE-2019-1003007 [HIGH] CWE-352 CVE-2019-1003007: A cross-site request forgery vulnerability exists in Jenkins Warnings Plugin 5.0.0 and earlier in sr
A cross-site request forgery vulnerability exists in Jenkins Warnings Plugin 5.0.0 and earlier in src/main/java/hudson/plugins/warnings/GroovyParser.java that allows attackers to execute arbitrary code via a form validation HTTP endpoint.
cvelistv5nvd