Thoughtworks

    Dashboard / Vendors

    Products: 2
    Vulnerabilities: 24
    Known Exploited: 0
    3
    Critical Level Threats
    9
    High Level Threats
    10
    Medium Level Threats
    2
    Low Level Threats

    Vulnerabilities

    100806040200
    JanFebMarAprMayJunJulAugSepOctNovDec
    Critical Level Threats
    High Level Threats
    Medium Level Threats
    Low Level Threats

    Products Security index

    Actions
    Items Per Page

    Vulnerabilities

    CVE-2024-56324

    GoCD vulnerable to XXE injection via abuse of pipeline XML "snippet" editing by group admins

    Last Modified: Aug 01, 2025
    Published: Jan 03, 2025

    CVE-2024-56322

    GoCD vulnerable to XXE injection via abuse of unused XML configuration repository functionality

    Last Modified: Aug 01, 2025
    Published: Jan 03, 2025

    CVE-2024-56321

    GoCD can allow malicious GoCD admins to abuse backup configuration to gain additional host access

    Last Modified: Aug 01, 2025
    Published: Jan 03, 2025

    CVE-2024-56320

    GoCD vulnerable to admin privilege escalation by a malicious internal/existing authenticated user

    Last Modified: Aug 01, 2025
    Published: Jan 03, 2025

    CVE-2024-28866

    GoCD vulnerable to reflected Cross-site Scripting possible on server loading page during start-up

    Last Modified: Aug 04, 2025
    Published: May 13, 2024
    Items Per Page
    Thoughtworks Vulnerabilities & Security CVEs | CVE-DB