Skip to main content

Vendor/product archive

jenkins / alauda_devops_pipeline CVEs

Beta · best-effort

2 CVEs tagged to jenkins / alauda_devops_pipeline0 Critical, 1 High, 1 Medium, 0 Low, 0 Unrated.

CVE-2019-16574

Published Dec 17, 2019

A missing permission check in Jenkins Alauda DevOps Pipeline Plugin 2.3.2 and earlier allows attackers with Overall/Read permission to connect to an attacker-specified URL using a…

CVSS 6.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2019-16573

Published Dec 17, 2019

A cross-site request forgery vulnerability in Jenkins Alauda DevOps Pipeline Plugin 2.3.2 and earlier allows attackers to connect to an attacker-specified URL using attacker-speci…

CVSS 8.8 · High
Vendor/product tagsBeta · best-effort
Showing 1-2 of 2 CVEsPage 1 of 1