Product:

Open_build_service

(Opensuse)
Date Id Summary Products Score Patch Annotated
2020-05-13 CVE-2020-8020 A Improper Neutralization of Input During Web Page Generation vulnerability in open-build-service allows remote attackers to store arbitrary JS code to cause XSS. This issue affects: openSUSE open-build-service versions prior to 7cc32c8e2ff7290698e101d9a80a9dc29a5500fb. Debian_linux, Open_build_service 6.1
2020-05-19 CVE-2020-8021 a Improper Access Control vulnerability in of Open Build Service allows remote attackers to read files of an OBS package where the sourceaccess/access is disabled This issue affects: Open Build Service versions prior to 2.10.5. Debian_linux, Open_build_service 5.3