VYPR

Lockable Resources Plugin

by Jenkins Project

Source repositories

CVEs (2)

  • CVE-2020-2281Sep 23, 2020
    risk 0.00cvss epss 0.00

    A cross-site request forgery (CSRF) vulnerability in Jenkins Lockable Resources Plugin 2.8 and earlier allows attackers to reserve, unreserve, unlock, and reset resources.

  • CVE-2019-1003042Mar 28, 2019
    risk 0.00cvss epss 0.00

    A cross site scripting vulnerability in Jenkins Lockable Resources Plugin 2.4 and earlier allows attackers able to control resource names to inject arbitrary JavaScript in web pages rendered by the plugin.