Vulnerabilities > Jenkins

DATE CVE VULNERABILITY TITLE RISK
2012-03-09 CVE-2012-0325 Cross-Site Scripting vulnerability in multiple products
Cross-site scripting (XSS) vulnerability in Jenkins before 1.454, Jenkins LTS before 1.424.5, and Jenkins Enterprise 1.400.x before 1.400.0.13 and 1.424.x before 1.424.5.1 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors, a different vulnerability than CVE-2012-0324.
4.3
2012-03-09 CVE-2012-0324 Cross-Site Scripting vulnerability in multiple products
Cross-site scripting (XSS) vulnerability in Jenkins before 1.454, Jenkins LTS before 1.424.5, and Jenkins Enterprise 1.400.x before 1.400.0.13 and 1.424.x before 1.424.5.1 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors, a different vulnerability than CVE-2012-0325.
4.3
2011-12-01 CVE-2011-4344 Cross-Site Scripting vulnerability in Jenkins
Cross-site scripting (XSS) vulnerability in Jenkins Core in Jenkins before 1.438, and 1.409 LTS before 1.409.3 LTS, when a stand-alone container is used, allows remote attackers to inject arbitrary web script or HTML via vectors related to error messages.
network
high complexity
jenkins CWE-79
2.6