CVE-2022-45400 - Jenkins JAPEX Plugin 1.7 XML External Entity (XXE) Vulnerability
CVE-2022-45400 is a security vulnerability found in the Jenkins JAPEX Plugin 1.7 and earlier versions. This vulnerability enables attackers to execute XML external entity
CVE-2022-45396: Jenkins SourceMonitor Plugin .2 and Earlier Vulnerable to XXE Attacks
Jenkins is a widely used open-source automation server that assists developers in building, deploying, and automating their projects. As one of the most popular CI/
CVE-2022-45395 - Jenkins CCCC Plugin .6 and Earlier Are Vulnerable to XML External Entity (XXE) Attacks
If you're using Jenkins CCCC Plugin .6 or earlier, you might be at risk of XML external entity (XXE) attacks. This vulnerability has
CVE-2022-42110 An XSS vulnerability in Liferay Portal and Liferay DXP allows remote attackers to inject arbitrary web script.
When creating a new Announcement, the application does not properly sanitize user-supplied input, resulting in XSS. When editing an existing Announcement, the application does not
CVE-2022-43689 Concrete CMS is vulnerable to XXE DNS requests that disclose IPs.
Requesting the MX hostname record for a subdomain leading to the server’s public IP address, for instance
www.example.com
results in the delivery
Episode
00:00:00
00:00:00