Vulnerabilities (CVE)

Filtered by vendor Jenkins Subscribe
Filtered by product Jiratestresultreporter
Total 2 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2022-28137 1 Jenkins 1 Jiratestresultreporter 2023-12-22 4.0 MEDIUM 4.3 MEDIUM
A missing permission check in Jenkins JiraTestResultReporter Plugin 165.v817928553942 and earlier allows attackers with Overall/Read permission to connect to an attacker-specified URL using attacker-specified credentials.
CVE-2022-28136 1 Jenkins 1 Jiratestresultreporter 2023-12-21 6.8 MEDIUM 8.8 HIGH
A cross-site request forgery (CSRF) vulnerability in Jenkins JiraTestResultReporter Plugin 165.v817928553942 and earlier allows attackers to connect to an attacker-specified URL using attacker-specified credentials.