Filtered by vendor Jenkins Subscriptions
Filtered by product Nested View Subscriptions
Total 2 CVE
CVE Vendors Products Updated CVSS v3.1
CVE-2021-21680 1 Jenkins 1 Nested View 2024-08-03 7.1 High
Jenkins Nested View Plugin 1.20 and earlier does not configure its XML transformer to prevent XML external entity (XXE) attacks.
CVE-2022-34182 1 Jenkins 1 Nested View 2024-08-03 6.1 Medium
Jenkins Nested View Plugin 1.20 through 1.25 (both inclusive) does not escape search parameters, resulting in a reflected cross-site scripting (XSS) vulnerability.