jenkins-2-plugins/pipeline-build-step: Stored XSS vulnerability in Pipeline: Build Step Plugin
Published Feb 15, 2023
5.4
MEDIUMCVSS 3.1
EPSS 81.40%
Description
Jenkins Pipeline: Build Step Plugin 2.18 and earlier does not escape job names in a JavaScript expression used in the Pipeline Snippet Generator, resulting in a stored cross-site scripting (XSS) vulnerability exploitable by attackers able to control job names.
Affected products
-
- Version unspecifiedStatusaffectedConstraints<=2.18
- Version
Default status is the baseline for the product, each version can override it (e.g. patched versions marked unaffected).
| Vendor | Product | Default status | Versions | ||||||
|---|---|---|---|---|---|---|---|---|---|
| Jenkins Project | Jenkins Pipeline: Build Step Plugin | n/a |
|
No data.
OCP-Tools-4.12-RHEL-8
jenkins-2-plugins-0:4.12.1683009955-1.el8
Fixed · RHSA-2023:3195
OCP-Tools-4.12-RHEL-8
jenkins-2-plugins-0:4.12.1698294000-1.el8
Fixed · RHSA-2023:6172
OCP-Tools-4.12-RHEL-8
jenkins-2-plugins-0:4.12.1706515741-1.el8
Fixed · RHSA-2024:0778
OCP-Tools-4.13-RHEL-8
jenkins-2-plugins-0:4.13.1684911916-1.el8
Fixed · RHSA-2023:3299
OCP-Tools-4.13-RHEL-8
jenkins-2-plugins-0:4.13.1698292274-1.el8
Fixed · RHSA-2023:6179
OCP-Tools-4.13-RHEL-8
jenkins-2-plugins-0:4.13.1706516346-1.el8
Fixed · RHSA-2024:0776
OCP-Tools-4.14-RHEL-8
jenkins-2-plugins-0:4.14.1699356715-1.el8
Fixed · RHSA-2023:7288
OCP-Tools-4.14-RHEL-8
jenkins-2-plugins-0:4.14.1706516441-1.el8
Fixed · RHSA-2024:0777
OpenShift Developer Tools and Services for OCP 4.11
jenkins-2-plugins-0:4.11.1683009941-1.el8
Fixed · RHSA-2023:3198
OpenShift Developer Tools and Services for OCP 4.11
jenkins-2-plugins-0:4.11.1698299029-1.el8
Fixed · RHSA-2023:6171
OpenShift Developer Tools and Services for OCP 4.11
jenkins-2-plugins-0:4.11.1706516946-1.el8
Fixed · RHSA-2024:0775
Red Hat OpenShift Container Platform 4.10
jenkins-2-plugins-0:4.10.1681719745-1.el8
Fixed · RHSA-2023:1866
Red Hat OpenShift Container Platform 3.11
jenkins-2-plugins
Out of support scope
| Product | Package | State | Advisory |
|---|---|---|---|
| OCP-Tools-4.12-RHEL-8 | jenkins-2-plugins-0:4.12.1683009955-1.el8 | Fixed | RHSA-2023:3195 |
| OCP-Tools-4.12-RHEL-8 | jenkins-2-plugins-0:4.12.1698294000-1.el8 | Fixed | RHSA-2023:6172 |
| OCP-Tools-4.12-RHEL-8 | jenkins-2-plugins-0:4.12.1706515741-1.el8 | Fixed | RHSA-2024:0778 |
| OCP-Tools-4.13-RHEL-8 | jenkins-2-plugins-0:4.13.1684911916-1.el8 | Fixed | RHSA-2023:3299 |
| OCP-Tools-4.13-RHEL-8 | jenkins-2-plugins-0:4.13.1698292274-1.el8 | Fixed | RHSA-2023:6179 |
| OCP-Tools-4.13-RHEL-8 | jenkins-2-plugins-0:4.13.1706516346-1.el8 | Fixed | RHSA-2024:0776 |
| OCP-Tools-4.14-RHEL-8 | jenkins-2-plugins-0:4.14.1699356715-1.el8 | Fixed | RHSA-2023:7288 |
| OCP-Tools-4.14-RHEL-8 | jenkins-2-plugins-0:4.14.1706516441-1.el8 | Fixed | RHSA-2024:0777 |
| OpenShift Developer Tools and Services for OCP 4.11 | jenkins-2-plugins-0:4.11.1683009941-1.el8 | Fixed | RHSA-2023:3198 |
| OpenShift Developer Tools and Services for OCP 4.11 | jenkins-2-plugins-0:4.11.1698299029-1.el8 | Fixed | RHSA-2023:6171 |
| OpenShift Developer Tools and Services for OCP 4.11 | jenkins-2-plugins-0:4.11.1706516946-1.el8 | Fixed | RHSA-2024:0775 |
| Red Hat OpenShift Container Platform 4.10 | jenkins-2-plugins-0:4.10.1681719745-1.el8 | Fixed | RHSA-2023:1866 |
| Red Hat OpenShift Container Platform 3.11 | jenkins-2-plugins | Out of support scope | n/a |
No package ranges for this CVE.
Remediation
Red Hat statement
OpenShift 3.11 is already in the ELS support model phase. The Jenkins components are out of scope of the ELS support, therefore, the OpenShift 3.11 Jenkins component is marked as out of support scope in this CVE.
Metrics
No CVSS v4.0 score for this CVE.
CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N
No CVSS v3.0 score for this CVE.
No CVSS v2.0 score for this CVE.
This CVE is not in the KEV list.
CISA SSVC (Vulnrichment)
Stakeholder-Specific Vulnerability Categorization from CISA ADP.
Exploitation
NoneAutomatable
NoTechnical Impact
PartialDecision
n/aAssessed Mar 19, 2025 · SSVC 2.0.3
Estimated probability of exploitation in the wild in the next 30 days (FIRST EPSS). As of Oct 1, 2026.
Score over time
2023–2026- EPSS v2
- EPSS v3
- EPSS v4
- EPSS v5
Percentile over time
- EPSS v2
- EPSS v3
- EPSS v4
- EPSS v5
Table of values (28 key points)
Flat stretches are collapsed; showing up to 120 newest points.
| Date | Score | Percentile | Model |
|---|---|---|---|
| Oct 1, 2026 | 81.40% (0.81400) | 99.63th | v5 (v2026.06.15) |
| Jun 15, 2026 | 81.40% (0.81400) | 99.59th | v5 (v2026.06.15) |
| Feb 16, 2026 | 65.32% (0.65320) | 98.44th | v4 (v2025.03.14) |
| Dec 29, 2025 | 60.43% (0.60432) | 98.19th | v4 (v2025.03.14) |
| Dec 12, 2025 | 56.70% (0.56700) | 98.02th | v4 (v2025.03.14) |
| Nov 21, 2025 | 50.58% (0.50581) | 97.71th | v4 (v2025.03.14) |
| Nov 18, 2025 | 11.52% (0.11523) | 92.91th | v4 (v2025.03.14) |
| Nov 10, 2025 | 50.58% (0.50581) | 97.70th | v4 (v2025.03.14) |
| Oct 17, 2025 | 48.61% (0.48613) | 97.59th | v4 (v2025.03.14) |
| Sep 8, 2025 | 55.03% (0.55026) | 97.97th | v4 (v2025.03.14) |
| Jul 27, 2025 | 49.06% (0.49060) | 97.66th | v4 (v2025.03.14) |
| Jul 11, 2025 | 42.74% (0.42745) | 97.32th | v4 (v2025.03.14) |
| Jun 28, 2025 | 30.98% (0.30980) | 96.50th | v4 (v2025.03.14) |
| Jun 7, 2025 | 29.93% (0.29934) | 96.38th | v4 (v2025.03.14) |
| Jun 6, 2025 | 35.27% (0.35269) | 96.82th | v4 (v2025.03.14) |
| May 30, 2025 | 26.87% (0.26874) | 96.07th | v4 (v2025.03.14) |
| Apr 15, 2025 | 24.11% (0.24111) | 95.69th | v4 (v2025.03.14) |
| Mar 19, 2025 | 3.81% (0.03809) | 86.74th | v4 (v2025.03.14) |
| Mar 17, 2025 | 12.78% (0.12780) | 93.45th | v4 (v2025.03.14) |
| Dec 12, 2024 | 0.08% (0.00077) | 35.16th | v3 (v2023.03.01) |
| Jun 14, 2024 | 0.07% (0.00075) | 32.19th | v3 (v2023.03.01) |
| Feb 22, 2024 | 0.07% (0.00075) | 30.19th | v3 (v2023.03.01) |
| Jan 16, 2024 | 0.10% (0.00097) | 40.15th | v3 (v2023.03.01) |
| Apr 19, 2023 | 0.09% (0.00090) | 37.07th | v3 (v2023.03.01) |
| Mar 27, 2023 | 0.05% (0.00054) | 19.51th | v3 (v2023.03.01) |
| Mar 7, 2023 | 0.05% (0.00047) | 14.27th | v3 (v2023.03.01) |
| Mar 6, 2023 | 0.89% (0.00885) | 27.89th | v2 (v2022.01.01) |
| Feb 16, 2023 | 0.89% (0.00885) | 27.62th | v2 (v2022.01.01) |
References (8)
- http://www.openwall.com/lists/oss-security/2023/02/15/4 mailing-listMailing ListThird Party Advisory
- https://access.redhat.com/security/cve/CVE-2023-25762 Vendor Advisory
- https://bugzilla.redhat.com/show_bug.cgi?id=2170041 Issue Tracking
- https://github.com/advisories/GHSA-9j65-3f2q-8q2r Advisory
- https://github.com/jenkinsci/pipeline-build-step-plugin/commit/0eaf88a695244ddb69d16c11b96659167dbead92
- https://nvd.nist.gov/vuln/detail/CVE-2023-25762
- https://www.cve.org/CVERecord?id=CVE-2023-25762
- https://www.jenkins.io/security/advisory/2023-02-15/#SECURITY-3019 Vendor Advisory
| Link | Providers | Tags |
|---|---|---|
| http://www.openwall.com/lists/oss-security/2023/02/15/4 | mailing-listMailing ListThird Party Advisory | |
| https://access.redhat.com/security/cve/CVE-2023-25762 | Vendor Advisory | |
| https://bugzilla.redhat.com/show_bug.cgi?id=2170041 | Issue Tracking | |
| https://github.com/advisories/GHSA-9j65-3f2q-8q2r | Advisory | |
| https://github.com/jenkinsci/pipeline-build-step-plugin/commit/0eaf88a695244ddb69d16c11b96659167dbead92 | ||
| https://nvd.nist.gov/vuln/detail/CVE-2023-25762 | ||
| https://www.cve.org/CVERecord?id=CVE-2023-25762 | ||
| https://www.jenkins.io/security/advisory/2023-02-15/#SECURITY-3019 | Vendor Advisory |
Change history (0)
No recorded changes yet.