Vulnerabilities
Vulnerable Software
Jenkins:  >> Urltrigger  >> 0.17  Security Vulnerabilities
Jenkins URLTrigger Plugin 0.48 and earlier does not configure its XML parser to prevent XML external entity (XXE) attacks.
CVSS Score
8.1
EPSS Score
0.012
Published
2021-05-25
A server-side request forgery vulnerability exists in Jenkins URLTrigger Plugin 0.41 and earlier in URLTrigger.java that allows attackers with Overall/Read access to cause Jenkins to send a GET request to a specified URL.
CVSS Score
6.5
EPSS Score
0.0
Published
2018-06-26


Contact Us

Shodan ® - All rights reserved