Lucene search

K
osvGoogleOSV:GHSA-JF8X-943C-R4H6
HistoryMay 24, 2022 - 5:03 p.m.

Jenkins Pipeline Aggregator View Plugin stored XSS vulnerability

2022-05-2417:03:48
Google
osv.dev
5
jenkins
pipeline
aggregator
view
plugin
stored
xss
vulnerability
exploitable
attackers
job
display
name
stage

AI Score

5.6

Confidence

High

EPSS

0.001

Percentile

22.0%

Jenkins Pipeline Aggregator View Plugin 1.8 and earlier does not escape information shown on its view, resulting in a stored XSS vulnerability exploitable by attackers able to affects view content such as job display name or pipeline stage names.

AI Score

5.6

Confidence

High

EPSS

0.001

Percentile

22.0%

Related for OSV:GHSA-JF8X-943C-R4H6