cve,link,title,description,vendor,products,score,severity,epss,cisa,article,ransomware,exploited,poc,trended,trended_no_1,published,trended_score CVE-2023-41941,https://securityvulnerability.io/vulnerability/CVE-2023-41941,,A missing permission check in Jenkins AWS CodeCommit Trigger Plugin 3.0.12 and earlier allows attackers with Overall/Read permission to enumerate credentials IDs of AWS credentials stored in Jenkins.,Jenkins,Jenkins Aws Codecommit Trigger Plugin,4.3,MEDIUM,0.0004900000058114529,false,false,false,false,,false,false,2023-09-06T13:15:00.000Z,0 CVE-2023-41942,https://securityvulnerability.io/vulnerability/CVE-2023-41942,,A cross-site request forgery (CSRF) vulnerability in Jenkins AWS CodeCommit Trigger Plugin 3.0.12 and earlier allows attackers to clear the SQS queue.,Jenkins,Jenkins Aws Codecommit Trigger Plugin,4.3,MEDIUM,0.0005000000237487257,false,false,false,false,,false,false,2023-09-06T13:15:00.000Z,0 CVE-2023-41943,https://securityvulnerability.io/vulnerability/CVE-2023-41943,,"Jenkins AWS CodeCommit Trigger Plugin 3.0.12 and earlier does not perform a permission check in an HTTP endpoint, allowing attackers with Overall/Read permission to clear the SQS queue.",Jenkins,Jenkins Aws Codecommit Trigger Plugin,6.5,MEDIUM,0.0006200000061653554,false,false,false,false,,false,false,2023-09-06T13:15:00.000Z,0 CVE-2023-41944,https://securityvulnerability.io/vulnerability/CVE-2023-41944,,"Jenkins AWS CodeCommit Trigger Plugin 3.0.12 and earlier does not escape the queue name parameter passed to a form validation URL, when rendering an error message, resulting in an HTML injection vulnerability.",Jenkins,Jenkins Aws Codecommit Trigger Plugin,6.1,MEDIUM,0.000539999979082495,false,false,false,false,,false,false,2023-09-06T13:15:00.000Z,0 CVE-2023-35147,https://securityvulnerability.io/vulnerability/CVE-2023-35147,,"Jenkins AWS CodeCommit Trigger Plugin 3.0.12 and earlier does not restrict the AWS SQS queue name path parameter in an HTTP endpoint, allowing attackers with Item/Read permission to obtain the contents of arbitrary files on the Jenkins controller file system.",Jenkins,Jenkins Aws Codecommit Trigger Plugin,6.5,MEDIUM,0.0008099999977275729,false,false,false,false,,false,false,2023-06-14T13:15:00.000Z,0