Vulnerabilities > Jenkins > Mongodb

DATE CVE VULNERABILITY TITLE RISK
2020-09-16 CVE-2020-2268 Cross-Site Request Forgery (CSRF) vulnerability in Jenkins Mongodb
A cross-site request forgery (CSRF) vulnerability in Jenkins MongoDB Plugin 1.3 and earlier allows attackers to gain access to some metadata of any arbitrary files on the Jenkins controller.
network
low complexity
jenkins CWE-352
8.8
2020-09-16 CVE-2020-2267 Missing Authorization vulnerability in Jenkins Mongodb
A missing permission check in Jenkins MongoDB Plugin 1.3 and earlier allows attackers with Overall/Read permission to gain access to some metadata of any arbitrary files on the Jenkins controller.
network
low complexity
jenkins CWE-862
4.3