Jenkins / Html Publisher
7 CVEs
| CVE ID | Description | Severity | CVSS | Published |
|---|---|---|---|---|
| CVE-2026-42524 | Jenkins HTML Publisher Plugin 427 and earlier does not escape job name and URL in the legacy wrapper file, resulting in a stored cross-site scripting (XSS) vul… | HIGH | 8.0 | Apr 29, 2026 |
| CVE-2025-53651 | Jenkins HTML Publisher Plugin 425 and earlier displays log messages that include the absolute paths of files archived during the Publish HTML reports post-buil… | MEDIUM | 6.3 | Jul 9, 2025 |
| CVE-2024-28151 | jenkins-2-plugins: Path traversal vulnerability in HTML Publisher Plugin | MEDIUM | 4.3 | Mar 6, 2024 |
| CVE-2024-28150 | jenkins-2-plugins: Stored XSS vulnerability in HTML Publisher Plugin | HIGH | 8.0 | Mar 6, 2024 |
| CVE-2024-28149 | jenkins-2-plugins: Improper input sanitization in HTML Publisher Plugin | HIGH | 8.0 | Mar 6, 2024 |
| CVE-2019-10432 | jenkins-2-plugins: Stored XSS vulnerability in HTML Publisher Plugin | MEDIUM | 5.4 | Oct 1, 2019 |
| CVE-2018-1000175 | A path traversal vulnerability exists in Jenkins HTML Publisher Plugin 1.15 and older in HtmlPublisherTarget.java that allows attackers able to configure the H… | MEDIUM | 6.5 | May 8, 2018 |
Showing 1 to 7 of 7 CVEs