Filtered by vendor Jenkins Subscriptions
Filtered by product Coverage\/complexity Scatter Plot Subscriptions
Total 2 CVE
CVE Vendors Products Updated CVSS v3.1
CVE-2022-28154 1 Jenkins 1 Coverage\/complexity Scatter Plot 2024-11-21 8.1 High
Jenkins Coverage/Complexity Scatter Plot Plugin 1.1.1 and earlier does not configure its XML parser to prevent XML external entity (XXE) attacks.
CVE-2020-2265 1 Jenkins 1 Coverage\/complexity Scatter Plot 2024-11-21 5.4 Medium
Jenkins Coverage/Complexity Scatter Plot Plugin 1.1.1 and earlier does not escape the method information in tooltips, resulting in a stored cross-site scripting (XSS) vulnerability exploitable by attackers able to provide report files to the plugin's post-build step.