Количество 2
Количество 2
CVE-2022-46686
Jenkins Custom Build Properties Plugin 2.79.vc095ccc85094 and earlier does not escape property values and build display names on the Custom Build Properties and Build Summary pages, resulting in a stored cross-site scripting (XSS) vulnerability exploitable by attackers able to set or change these values.
GHSA-5g2c-j6v9-vf94
Jenkins Custom Build Properties Plugin vulnerable to Cross-site Scripting
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2022-46686 Jenkins Custom Build Properties Plugin 2.79.vc095ccc85094 and earlier does not escape property values and build display names on the Custom Build Properties and Build Summary pages, resulting in a stored cross-site scripting (XSS) vulnerability exploitable by attackers able to set or change these values. | CVSS3: 5.4 | 10% Средний | около 3 лет назад | |
GHSA-5g2c-j6v9-vf94 Jenkins Custom Build Properties Plugin vulnerable to Cross-site Scripting | CVSS3: 8 | 10% Средний | около 3 лет назад |
Уязвимостей на страницу