Skip to main content

Vendor/product archive

jenkins / owasp_dependency-track CVEs

Beta · best-effort

2 CVEs tagged to jenkins / owasp_dependency-track0 Critical, 1 High, 1 Medium, 0 Low, 0 Unrated.

CVE-2021-21633

Published Mar 30, 2021

A cross-site request forgery (CSRF) vulnerability in Jenkins OWASP Dependency-Track Plugin 3.1.0 and earlier allows attackers to connect to an attacker-specified URL, capturing cr…

CVSS 8.8 · High
Vendor/product tagsBeta · best-effort

CVE-2021-21632

Published Mar 30, 2021

A missing permission check in Jenkins OWASP Dependency-Track Plugin 3.1.0 and earlier allows attackers with Overall/Read permission to connect to an attacker-specified URL, captur…

CVSS 6.5 · Medium
Vendor/product tagsBeta · best-effort
Showing 1-2 of 2 CVEsPage 1 of 1