Vulnerabilities
Vulnerable Software
Jenkins:  >> Gatling  >> 1.0.1  Security Vulnerabilities
Jenkins Gatling Plugin 136.vb_9009b_3d33a_e serves Gatling reports in a manner that bypasses the Content-Security-Policy protection introduced in Jenkins 1.641 and 1.625, resulting in a cross-site scripting (XSS) vulnerability exploitable by users able to change report content.
CVSS Score
8.0
EPSS Score
0.0
Published
2025-06-06
Jenkins Gatling Plugin 1.2.7 and earlier prevents Content-Security-Policy headers from being set for Gatling reports served by the plugin, resulting in an XSS vulnerability exploitable by users able to change report content.
CVSS Score
5.4
EPSS Score
0.002
Published
2020-04-07


Contact Us

Shodan ® - All rights reserved