Show filters
3 Total Results
Displaying 1-3 of 3
Sort by:
Attacker Value
Unknown

CVE-2020-2258

Disclosure Date: September 16, 2020 (last updated February 22, 2025)
Jenkins Health Advisor by CloudBees Plugin 3.2.0 and earlier does not correctly perform a permission check in an HTTP endpoint, allowing attackers with Overall/Read permission to view that HTTP endpoint.
Attacker Value
Unknown

CVE-2020-2094

Disclosure Date: January 15, 2020 (last updated February 21, 2025)
A missing permission check in Jenkins Health Advisor by CloudBees Plugin 3.0 and earlier allows attackers with Overall/Read permission to send a fixed email to an attacker-specific recipient.
Attacker Value
Unknown

CVE-2020-2093

Disclosure Date: January 15, 2020 (last updated February 21, 2025)
A cross-site request forgery vulnerability in Jenkins Health Advisor by CloudBees Plugin 3.0 and earlier allows attackers to send an email with fixed content to an attacker-specified recipient.