CVE |
Vendors |
Products |
Updated |
CVSS |
CVE-2013-2033 |
2 Cloudbees, Jenkins |
2 Jenkins, Jenkins |
2018-12-06 |
2.1 |
Cross-site scripting (XSS) vulnerability in Jenkins before 1.514, LTS before 1.509.1, and Enterprise 1.466.x before 1.466.14.1 and 1.480.x before 1.480.4.1 allows remote authenticated users with write permission to inject arbitrary web script or... |
CVE-2012-6073 |
2 Cloudbees, Jenkins |
2 Jenkins, Jenkins |
2018-10-30 |
5.8 |
Open redirect vulnerability in Jenkins before 1.491, Jenkins LTS before 1.480.1, and Jenkins Enterprise 1.424.x before 1.424.6.13, 1.447.x before 1.447.4.1, and 1.466.x before 1.466.10.1 allows remote attackers to redirect users to arbitrary web... |
CVE-2012-6074 |
2 Cloudbees, Jenkins |
2 Jenkins, Jenkins |
2018-10-30 |
3.5 |
Cross-site scripting (XSS) vulnerability in Jenkins before 1.491, Jenkins LTS before 1.480.1, and Jenkins Enterprise 1.424.x before 1.424.6.13, 1.447.x before 1.447.4.1, and 1.466.x before 1.466.10.1 allows remote authenticated users with write... |
CVE-2012-0325 |
2 Cloudbees, Jenkins |
2 Jenkins, Jenkins |
2018-10-30 |
4.3 |
Cross-site scripting (XSS) vulnerability in Jenkins before 1.454, Jenkins LTS before 1.424.5, and Jenkins Enterprise 1.400.x before 1.400.0.13 and 1.424.x before 1.424.5.1 allows remote attackers to inject arbitrary web script or HTML via... |
CVE-2012-0324 |
2 Cloudbees, Jenkins |
2 Jenkins, Jenkins |
2018-10-30 |
4.3 |
Cross-site scripting (XSS) vulnerability in Jenkins before 1.454, Jenkins LTS before 1.424.5, and Jenkins Enterprise 1.400.x before 1.400.0.13 and 1.424.x before 1.424.5.1 allows remote attackers to inject arbitrary web script or HTML via... |
CVE-2013-0158 |
2 Cloudbees, Jenkins |
2 Jenkins, Jenkins |
2018-10-30 |
2.6 |
Unspecified vulnerability in Jenkins before 1.498, Jenkins LTS before 1.480.2, and Jenkins Enterprise 1.447.x before 1.447.6.1 and 1.466.x before 1.466.12.1, when a slave is attached and anonymous read access is enabled, allows remote attackers... |
CVE-2012-6072 |
2 Cloudbees, Jenkins |
2 Jenkins, Jenkins |
2018-10-30 |
4.3 |
CRLF injection vulnerability in Jenkins before 1.491, Jenkins LTS before 1.480.1, and Jenkins Enterprise 1.424.x before 1.424.6.13, 1.447.x before 1.447.4.1, and 1.466.x before 1.466.10.1 allows remote attackers to inject arbitrary HTTP headers... |
CVE-2013-2034 |
1 Cloudbees |
1 Jenkins |
2016-07-15 |
6.8 |
Multiple cross-site request forgery (CSRF) vulnerabilities in Jenkins before 1.514, LTS before 1.509.1, and Enterprise 1.466.x before 1.466.14.1 and 1.480.x before 1.480.4.1 allow remote attackers to hijack the authentication of administrators... |