Jenkins and Jenkins Plugin are both Jenkins open source products. jenkins is an application. Jenkins Plugin is an application that provides hundreds of plug-ins to support building, deploying, and automating any project. Jenkins build-metrics Plugin version 1.3 contains a cross-site scripting vulnerability that stems from not escaping the build description on its view, which could be exploited by an attacker to perform cross-site scripting attacks. vulnerability can be exploited to perform cross-site scripting attacks.