Vulnerabilities > Thoughtworks > Gocd > 21.1.0
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2022-05-20 | CVE-2022-29182 | Cross-site Scripting vulnerability in Thoughtworks Gocd GoCD is a continuous delivery server. | 4.3 |
2022-04-14 | CVE-2021-43286 | Command Injection vulnerability in Thoughtworks Gocd An issue was discovered in ThoughtWorks GoCD before 21.3.0. | 6.5 |
2022-04-14 | CVE-2021-43288 | Cross-site Scripting vulnerability in Thoughtworks Gocd An issue was discovered in ThoughtWorks GoCD before 21.3.0. | 3.5 |
2022-04-14 | CVE-2021-43289 | Path Traversal vulnerability in Thoughtworks Gocd An issue was discovered in ThoughtWorks GoCD before 21.3.0. | 5.0 |
2022-04-14 | CVE-2021-43290 | Path Traversal vulnerability in Thoughtworks Gocd An issue was discovered in ThoughtWorks GoCD before 21.3.0. | 7.5 |
2022-04-14 | CVE-2021-43287 | Information Exposure vulnerability in Thoughtworks Gocd An issue was discovered in ThoughtWorks GoCD before 21.3.0. | 5.0 |
2022-04-11 | CVE-2022-24832 | Injection vulnerability in Thoughtworks Gocd GoCD is an open source a continuous delivery server. | 4.9 |
2021-04-01 | CVE-2021-25924 | Cross-Site Request Forgery (CSRF) vulnerability in Thoughtworks Gocd In GoCD, versions 19.6.0 to 21.1.0 are vulnerable to Cross-Site Request Forgery due to missing CSRF protection at the `/go/api/config/backup` endpoint. | 8.8 |