Show filters
2 Total Results
Displaying 1-2 of 2
Sort by:
Attacker Value
Unknown

CVE-2022-34182

Disclosure Date: June 23, 2022 (last updated October 25, 2023)
Jenkins Nested View Plugin 1.20 through 1.25 (both inclusive) does not escape search parameters, resulting in a reflected cross-site scripting (XSS) vulnerability.
Attacker Value
Unknown

CVE-2021-21680

Disclosure Date: August 31, 2021 (last updated February 23, 2025)
Jenkins Nested View Plugin 1.20 and earlier does not configure its XML transformer to prevent XML external entity (XXE) attacks.