Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:38947
HistoryJan 21, 2023 - 12:44 a.m.

Cross-site Scripting (XSS)

2023-01-2100:44:55
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
11
cross-site scripting
jenkins-2-plugins
vulnerable
test results
permission
malicious javascript

0.001 Low

EPSS

Percentile

22.0%

jenkins-2-plugins is vulnerable to Cross-site Scripting (XSS). The vulnerability exists because the library does not properly escape the descriptions of test results, allowing an attacker with Run/Update permission to inject and execute malicious javascript.