Lucene search

K
cnvdChina National Vulnerability DatabaseCNVD-2022-65922
HistoryJun 27, 2022 - 12:00 a.m.

Jenkins Cross-Site Scripting Vulnerability (CNVD-2022-65922)

2022-06-2700:00:00
China National Vulnerability Database
www.cnvd.org.cn
11

0.001 Low

EPSS

Percentile

22.0%

Jenkins is a Jenkins open source application. An open source automation server Jenkins provides hundreds of plugins to support building, deploying and automating any project.Jenkins suffers from a cross-site scripting vulnerability that stems from the title attribute and alt attribute not being further escaped in a page. An attacker could exploit the vulnerability to execute JavaScript code on the client side.