cve,link,title,description,vendor,products,score,severity,epss,cisa,cisa_published,article,ransomware,exploited,exploited_date,poc,trended,trended_no_1,trended_no_1_date,published,trended_score CVE-2023-30529,https://securityvulnerability.io/vulnerability/CVE-2023-30529,Unauthorized Database Access in Jenkins Lucene-Search Plugin,"The Jenkins Lucene-Search Plugin versions up to 387.v938a_ecb_f7fe9 exposes a vulnerability that permits unauthorized database reindexing due to the absence of POST request requirements for a specific HTTP endpoint. This flaw allows potential attackers to execute reindexing operations, posing a significant risk to data integrity and security.",Jenkins,Jenkins Lucene-Search Plugin,4.3,MEDIUM,0.0007699999841861427,false,,false,false,false,,,false,false,,2023-04-12T18:15:00.000Z,0 CVE-2022-36922,https://securityvulnerability.io/vulnerability/CVE-2022-36922,Reflected Cross-Site Scripting in Jenkins Lucene-Search Plugin,"The Jenkins Lucene-Search Plugin, specifically version 370.v62a5f618cd3a and earlier, is susceptible to a reflected cross-site scripting vulnerability due to improper escaping of the search query parameter. This flaw allows attackers to inject malicious scripts, which can be executed in the context of the victim's browser when they view the search results page, leading to potential data theft or session hijacking.",Jenkins,Jenkins Lucene-search Plugin,6.1,MEDIUM,0.0006099999882280827,false,,false,false,false,,,false,false,,2022-07-27T14:29:29.000Z,0 CVE-2022-36910,https://securityvulnerability.io/vulnerability/CVE-2022-36910,Permission Bypass in Jenkins Lucene-Search Plugin by Jenkins,"The Jenkins Lucene-Search Plugin, specifically version 370.v62a5f618cd3a and earlier, lacks proper permission checks across various HTTP endpoints. This oversight allows attackers with Overall/Read permissions to reindex the database, potentially uncovering sensitive information about various jobs that should remain inaccessible.",Jenkins,Jenkins Lucene-search Plugin,5.4,MEDIUM,0.0005000000237487257,false,,false,false,false,,,false,false,,2022-07-27T14:26:54.000Z,0