Описание
Persistent XSS vulnerability in Jenkins DRY Plugin
The custom Details view of the Static Analysis Utilities based DRY Plugin, was vulnerable to a persisted cross-site scripting vulnerability: Malicious users able to influence the input to this plugin could insert arbitrary HTML into this view.
Пакеты
Наименование
org.jvnet.hudson.plugins:dry
maven
Затронутые версииВерсия исправления
<= 2.48
2.49
Связанные уязвимости
CVSS3: 5.4
nvd
больше 8 лет назад
The custom Details view of the Static Analysis Utilities based DRY Plugin, was vulnerable to a persisted cross-site scripting vulnerability: Malicious users able to influence the input to this plugin could insert arbitrary HTML into this view.