cve,link,title,description,vendor,products,score,severity,epss,cisa,cisa_published,article,ransomware,exploited,exploited_date,poc,trended,trended_no_1,trended_no_1_date,published,trended_score CVE-2022-36913,https://securityvulnerability.io/vulnerability/CVE-2022-36913,File Path Disclosure in Jenkins Openstack Heat Plugin by CloudBees,"The Jenkins Openstack Heat Plugin versions 1.5 and earlier lack adequate permission checks during form validation methods. This weakness allows authenticated users with Overall/Read permissions to verify the existence of a specified file path on the Jenkins controller file system. Exploitation could lead to sensitive information exposure, potentially compromising the security of the server.",Jenkins,Jenkins Openstack Heat Plugin,4.3,MEDIUM,0.0005000000237487257,false,,false,false,false,,,false,false,,2022-07-27T14:27:28.000Z,0 CVE-2022-36912,https://securityvulnerability.io/vulnerability/CVE-2022-36912,Missing Permission Check in Jenkins Openstack Heat Plugin Affects Multiple Versions,"The Jenkins Openstack Heat Plugin fails to implement proper permission checks, allowing attackers with Overall/Read permissions to connect to arbitrary URLs specified by the attacker. This flaw could potentially lead to unauthorized access and exploitation of the system, making it essential for users to review their configurations and apply appropriate security measures.",Jenkins,Jenkins Openstack Heat Plugin,4.3,MEDIUM,0.0005000000237487257,false,,false,false,false,,,false,false,,2022-07-27T14:27:18.000Z,0 CVE-2022-36911,https://securityvulnerability.io/vulnerability/CVE-2022-36911,Cross-Site Request Forgery Vulnerability in Jenkins Openstack Heat Plugin,"A cross-site request forgery (CSRF) vulnerability exists in Jenkins Openstack Heat Plugin 1.5 and earlier, enabling attackers to initiate unauthorized actions by sending requests from a user's browser to an attacker-specified URL. This can lead to potential unauthorized access and manipulation of data.",Jenkins,Jenkins Openstack Heat Plugin,6.5,MEDIUM,0.0005300000193528831,false,,false,false,false,,,false,false,,2022-07-27T14:27:06.000Z,0