CVEs (4)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
1Jenkins 1Static Analysis Utilities Jun 17, 2026 Nov 4, 2020 N/A· v4 5.4 MEDIUM· v3 3.5 LOW· v2 Jenkins Static Analysis Utilities Plugin 1.96 and earlier does not escape the annotation message in tooltips, resulting in a stored cross-site scripting (XSS) vulnerability exploitable by attackers with Job/Configure per...Show more |
1Jenkins 1Static Analysis Utilities Jun 17, 2026 Apr 30, 2019 N/A· v4 6.5 MEDIUM· v3 4.0 MEDIUM· v2 A missing permission check in Jenkins Static Analysis Utilities Plugin 1.95 and earlier in the DefaultGraphConfigurationView#doSave form handler method allowed attackers with Overall/Read permission to change the per-job...Show more |
1Jenkins 1Static Analysis Utilities Jun 17, 2026 Apr 30, 2019 N/A· v4 6.5 MEDIUM· v3 4.3 MEDIUM· v2 A cross-site request forgery vulnerability in Jenkins Static Analysis Utilities Plugin 1.95 and earlier in the DefaultGraphConfigurationView#doSave form handler method allowed attackers to change the per-job default grap...Show more |
1Jenkins 1Static Analysis Utilities May 13, 2026 Oct 5, 2017 N/A· v4 5.4 MEDIUM· v3 3.5 LOW· v2 The Details view of some Static Analysis Utilities based plugins, was vulnerable to a persisted cross-site scripting vulnerability: Malicious users able to influence the input to these plugins, for example the console ou...Show more |