cve,link,title,description,vendor,products,score,severity,epss,cisa,cisa_published,article,ransomware,exploited,exploited_date,poc,trended,trended_no_1,trended_no_1_date,published,trended_score CVE-2020-2205,https://securityvulnerability.io/vulnerability/CVE-2020-2205,,"Jenkins VncRecorder Plugin 1.25 and earlier does not escape a tool path in the `checkVncServ` form validation endpoint, resulting in a stored cross-site scripting (XSS) vulnerability exploitable by Jenkins administrators.",Jenkins,Jenkins Vncrecorder Plugin,4.8,MEDIUM,0.0005000000237487257,false,,false,false,false,,,false,false,,2020-07-02T14:55:34.000Z,0 CVE-2020-2206,https://securityvulnerability.io/vulnerability/CVE-2020-2206,,"Jenkins VncRecorder Plugin 1.25 and earlier does not escape a parameter value in the checkVncServ form validation endpoint, resulting in a reflected cross-site scripting (XSS) vulnerability.",Jenkins,Jenkins Vncrecorder Plugin,6.1,MEDIUM,0.0006600000197067857,false,,false,false,false,,,false,false,,2020-07-02T14:55:34.000Z,0