MEDIUM
Jenkins Pipeline Aggregator View Plugin 1.8 and earlier does not escape information shown on its view, resulting in a stored XSS vulnerability exploitable by attackers able to affects view content such as job display name or pipeline stage names
Published Dec 17, 2019
5.4
MEDIUMCVSS 3.1
EPSS 0.69%
Description
Affected products
Remediation
References (5)
Change history (0)
No recorded changes yet.