Components
Vulnerabilities
Pricing
MCP
Docs
Sign up
Login
Find vulnerabilities. Fix fast with AI.
Search components by package, version, or CVE to get started.
Ecosystem
Package
Version
Vulnerabilities
CVE-2020-2206
CVE-2020-2206
Jenkins VncRecorder Plugin 1.25 and earlier does not escape a parameter value in the checkVncServ form validation endpoint, resulting in a reflected cross-site scripting (XSS) vulnerability.
Published Feb 5, 2026
https://github.com/advisories/GHSA-fq52-6cjf-jw59
CVSS Score
Medium
6.1
Components Impacted
Components Impacted
Security Details
Security Details
Sonatype Research
Sonatype Research
Ecosystem
Package
Version
Ecosystem
Package
Version
maven
org.jenkins-ci.plugins/vncrecorder
1.12
maven
org.jenkins-ci.plugins/vncrecorder
1.13
maven
org.jenkins-ci.plugins/vncrecorder
1.14
maven
org.jenkins-ci.plugins/vncrecorder
1.15
maven
org.jenkins-ci.plugins/vncrecorder
1.18
maven
org.jenkins-ci.plugins/vncrecorder
1.19
maven
org.jenkins-ci.plugins/vncrecorder
1.1
maven
org.jenkins-ci.plugins/vncrecorder
1.20
maven
org.jenkins-ci.plugins/vncrecorder
1.21
maven
org.jenkins-ci.plugins/vncrecorder
1.22
maven
org.jenkins-ci.plugins/vncrecorder
1.23
maven
org.jenkins-ci.plugins/vncrecorder
1.24
maven
org.jenkins-ci.plugins/vncrecorder
1.25
maven
org.jenkins-ci.plugins/vncrecorder
1.2
maven
org.jenkins-ci.plugins/vncrecorder
1.4
maven
org.jenkins-ci.plugins/vncrecorder
1.5
maven
org.jenkins-ci.plugins/vncrecorder
1.6
maven
org.jenkins-ci.plugins/vncrecorder
1.8
1-18 of 18
CVE-2020-2206 | Components Impacted | Sonatype Guide | Sonatype Guide