VYPR

Maven package

org.jenkins-ci.plugins/gatling

pkg:maven/org.jenkins-ci.plugins/gatling

Vulnerabilities (2)

  • CVE-2025-5806Jun 6, 2025

    Jenkins Gatling Plugin 136.vb_9009b_3d33a_e serves Gatling reports in a manner that bypasses the Content-Security-Policy protection introduced in Jenkins 1.641 and 1.625, resulting in a cross-site scripting (XSS) vulnerability exploitable by users able to change report content.

  • CVE-2020-2173Apr 7, 2020
    affected < 1.3.0fixed 1.3.0

    Jenkins Gatling Plugin 1.2.7 and earlier prevents Content-Security-Policy headers from being set for Gatling reports served by the plugin, resulting in an XSS vulnerability exploitable by users able to change report content.