Логотип exploitDog
bind:CVE-2018-1000426
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2018-1000426

Количество 2

Количество 2

nvd логотип

CVE-2018-1000426

около 7 лет назад

A cross-site scripting vulnerability exists in Jenkins Git Changelog Plugin 2.6 and earlier in GitChangelogSummaryDecorator/summary.jelly, GitChangelogLeftsideBuildDecorator/badge.jelly, GitLogJiraFilterPostPublisher/config.jelly, GitLogBasicChangelogPostPublisher/config.jelly that allows attackers able to control the Git history parsed by the plugin to have Jenkins render arbitrary HTML on some pages.

CVSS3: 6.1
EPSS: Низкий
github логотип

GHSA-jcmg-9rw5-9rm2

больше 3 лет назад

Stored XSS vulnerability in Jenkins Git Changelog Plugin

CVSS3: 6.1
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2018-1000426

A cross-site scripting vulnerability exists in Jenkins Git Changelog Plugin 2.6 and earlier in GitChangelogSummaryDecorator/summary.jelly, GitChangelogLeftsideBuildDecorator/badge.jelly, GitLogJiraFilterPostPublisher/config.jelly, GitLogBasicChangelogPostPublisher/config.jelly that allows attackers able to control the Git history parsed by the plugin to have Jenkins render arbitrary HTML on some pages.

CVSS3: 6.1
0%
Низкий
около 7 лет назад
github логотип
GHSA-jcmg-9rw5-9rm2

Stored XSS vulnerability in Jenkins Git Changelog Plugin

CVSS3: 6.1
0%
Низкий
больше 3 лет назад

Уязвимостей на страницу