VendorsJenkinsvrealize_orchestratorany version
Vulnerabilities

Jenkins vRealize Orchestrator any version

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

2CVEs
CVE-2022-34211
A cross-site request forgery (CSRF) vulnerability in Jenkins vRealize Orchestrator Plugin 3.0 and earlier allows attackers to send an HTTP POST request to an attacker-specified URL.
Published 2022-06-22 · Modified
6.5EPSS 0.005
CVE-2022-34212
A missing permission check in Jenkins vRealize Orchestrator Plugin 3.0 and earlier allows attackers with Overall/Read permission to send an HTTP POST request to an attacker-specified URL.
Published 2022-06-22 · Modified
5.7EPSS 0.007