Jenkins Subversion 2.15.1 for Jenkins

CPE Details

Jenkins Subversion 2.15.1 for Jenkins
2.15.1
2021-11-08
12h54 +00:00
2021-11-15
17h15 +00:00
Alerte pour un CPE
Stay informed of any changes for a specific CPE.
Notifications manage

CPE Name: cpe:2.3:a:jenkins:subversion:2.15.1:*:*:*:*:jenkins:*:*

Informations

Vendor

jenkins

Product

subversion

Version

2.15.1

Target Software

jenkins

Related CVE

Open and find in CVE List

CVE ID Published Description Score Severity
CVE-2022-29048 2022-04-12 17h50 +00:00 A cross-site request forgery (CSRF) vulnerability in Jenkins Subversion Plugin 2.15.3 and earlier allows attackers to connect to an attacker-specified URL.
4.3
Medium
CVE-2022-29046 2022-04-12 17h50 +00:00 Jenkins Subversion Plugin 2.15.3 and earlier does not escape the name and description of List Subversion tags (and more) parameters on views displaying parameters, resulting in a stored cross-site scripting (XSS) vulnerability exploitable by attackers with Item/Configure permission.
5.4
Medium