cve,link,title,description,vendor,products,score,severity,epss,cisa,cisa_published,article,ransomware,exploited,exploited_date,poc,trended,trended_no_1,trended_no_1_date,published,trended_score CVE-2022-28153,https://securityvulnerability.io/vulnerability/CVE-2022-28153,Stored Cross-Site Scripting in Jenkins SiteMonitor Plugin,"The Jenkins SiteMonitor Plugin prior to version 0.7 is susceptible to a stored cross-site scripting (XSS) vulnerability. This flaw arises because the plugin fails to properly escape the URLs of monitored sites shown in tooltips, allowing attackers who have Item/Configure permissions to inject malicious scripts. If exploited, this vulnerability can compromise user sessions and lead to unauthorized actions on behalf of legitimate users.",Jenkins,Jenkins Sitemonitor Plugin,5.4,MEDIUM,0.0005000000237487257,false,,false,false,false,,,false,false,,2022-03-29T12:31:16.000Z,0 CVE-2019-10317,https://securityvulnerability.io/vulnerability/CVE-2019-10317,,Jenkins SiteMonitor Plugin 0.5 and earlier disabled SSL/TLS and hostname verification globally for the Jenkins master JVM.,Jenkins,Jenkins Sitemonitor Plugin,5.9,MEDIUM,0.0029800001066178083,false,,false,false,false,,,false,false,,2019-04-30T12:25:18.000Z,0