Vulnerabilities
Vulnerable Software
Jenkins:  >> Shelve Project  Security Vulnerabilities
A cross-site request forgery (CSRF) vulnerability in Jenkins Shelve Project Plugin 3.0 and earlier allows attackers to shelve, unshelve, or delete a project.
CVSS Score
8.1
EPSS Score
0.001
Published
2020-12-03
A cross-site scripting vulnerability exists in Jenkins Shelve Project Plugin 1.5 and earlier in ShelveProjectAction/index.jelly, ShelvedProjectsAction/index.jelly that allows attackers with Job/Configure permission to define JavaScript that would be executed in another user's browser when that other user performs some UI actions.
CVSS Score
5.4
EPSS Score
0.001
Published
2018-08-01


Contact Us

Shodan ® - All rights reserved