0.001 Low
EPSS
Percentile
22.0%
jenkins is vulnerable to cross-site scripting. The vulnerability exists because the help icon does not escape the feature name that is part of its tooltip which allows an attacker to inject and execute arbitrary javascript.
secdb.alpinelinux.org/edge/community.yaml
secdb.alpinelinux.org/v3.16/community.yaml
www.jenkins.io/security/advisory/2022-06-22/#SECURITY-2781