Lucene search

K
osvGoogleOSV:GHSA-477R-V22Q-R42F
HistoryMay 17, 2022 - 12:29 a.m.

Persisted XSS Vulnerability in Jenkins Sidebar Link Plugin

2022-05-1700:29:00
Google
osv.dev
5
jenkins
sidebar link
plugin
vulnerability
input validation
javascript
schemes
security

AI Score

6.9

Confidence

High

EPSS

0.001

Percentile

21.7%

The Sidebar Link plugin allows users able to configure jobs, views, and agents to add entries to the sidebar of these objects. There was no input validation, which meant users were able to use javascript: schemes for these links.

AI Score

6.9

Confidence

High

EPSS

0.001

Percentile

21.7%

Related for OSV:GHSA-477R-V22Q-R42F