|
CVE-2020-2103
|
Medium
|
2020-01-29
|
Mitigation candidate
|
Working exploit published
|
Jenkins 2.218 and earlier, LTS 2.204.1 and earlier exposed session identifiers on a user's detail object in the whoAmI diagnostic page.
|
|
CVE-2019-20445
|
Critical
|
2020-01-29
|
Mitigation candidate
|
No public exploit
|
HttpObjectDecoder.java in Netty before 4.1.44 allows a Content-Length header to be accompanied by a second Content-Length header, or by a Transfer-Encoding header.
|
|
CVE-2019-20444
|
Critical
|
2020-01-29
|
Mitigation candidate
|
No public exploit
|
HttpObjectDecoder.java in Netty before 4.1.44 allows an HTTP header that lacks a colon, which might be interpreted as a separate header with an incorrect syntax, or might be interpreted as an "invalid fold."
|
|
CVE-2020-7934
|
Medium
|
2020-01-28
|
Mitigation candidate
|
Working exploit published
|
In LifeRay Portal CE 7.1.0 through 7.2.1 GA2, the First Name, Middle Name, and Last Name fields for user accounts in MyAccountPortlet are all vulnerable to a persistent XSS issue. Any user can modify these fields with a particular XSS payload, and it will be stored in the database. The payload will then be rendered when a user utilizes the search feature to search for other users (i.e., if a user with modified fields occurs in the search results). This issue was fixed in Liferay Portal CE version 7.3.0 GA1.
|
|
CVE-2020-7226
|
High
|
2020-01-24
|
Mitigation candidate
|
No public exploit
|
CiphertextHeader.java in Cryptacular 1.2.3, as used in Apereo CAS and other products, allows attackers to trigger excessive memory allocation during a decode operation, because the nonce array length associated with "new byte" may depend on untrusted input within the header of encoded data.
|
|
CVE-2020-2096
|
Medium
|
2020-01-15
|
Mitigation candidate
|
Working exploit published
|
Jenkins Gitlab Hook Plugin 1.4.2 and earlier does not escape project names in the build_now endpoint, resulting in a reflected XSS vulnerability.
|
|
CVE-2019-20330
|
Critical
|
2020-01-03
|
Mitigation candidate
|
No public exploit
|
FasterXML jackson-databind 2.x before 2.9.10.2 lacks certain net.sf.ehcache blocking.
|