Lucene search

K
redhatcveRedhat.comRH:CVE-2020-2222
HistoryJul 15, 2020 - 9:07 p.m.

CVE-2020-2222

2020-07-1521:07:37
redhat.com
access.redhat.com
14

EPSS

0.001

Percentile

22.0%

A flaw was found in jenkins in versions prior to 2.244 and versions prior to LTS 2.235.1. Job names in the ‘Keep this build forever’ badge tooltip are not properly escaped which results in a stored cross-site scripting (XSS) vulnerability exploitable by users able to configure job names. The highest threat from this vulnerability is to data confidentiality and integrity as well as system availability.