Логотип exploitDog
bind:CVE-2023-25761
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2023-25761

Количество 4

Количество 4

redhat логотип

CVE-2023-25761

почти 3 года назад

Jenkins JUnit Plugin 1166.va_436e268e972 and earlier does not escape test case class names in JavaScript expressions, resulting in a stored cross-site scripting (XSS) vulnerability exploitable by attackers able to control test case class names in the JUnit resources processed by the plugin.

CVSS3: 5.4
EPSS: Низкий
nvd логотип

CVE-2023-25761

почти 3 года назад

Jenkins JUnit Plugin 1166.va_436e268e972 and earlier does not escape test case class names in JavaScript expressions, resulting in a stored cross-site scripting (XSS) vulnerability exploitable by attackers able to control test case class names in the JUnit resources processed by the plugin.

CVSS3: 5.4
EPSS: Низкий
msrc логотип

CVE-2023-25761

4 месяца назад

Jenkins JUnit Plugin 1166.va_436e268e972 and earlier does not escape test case class names in JavaScript expressions, resulting in a stored cross-site scripting (XSS) vulnerability exploitable by attackers able to control test case class names in the JUnit resources processed by the plugin.

CVSS3: 5.4
EPSS: Низкий
github логотип

GHSA-ph74-8rgx-64c5

почти 3 года назад

Cross-site Scripting in Jenkins JUnit Plugin

CVSS3: 5.4
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
redhat логотип
CVE-2023-25761

Jenkins JUnit Plugin 1166.va_436e268e972 and earlier does not escape test case class names in JavaScript expressions, resulting in a stored cross-site scripting (XSS) vulnerability exploitable by attackers able to control test case class names in the JUnit resources processed by the plugin.

CVSS3: 5.4
2%
Низкий
почти 3 года назад
nvd логотип
CVE-2023-25761

Jenkins JUnit Plugin 1166.va_436e268e972 and earlier does not escape test case class names in JavaScript expressions, resulting in a stored cross-site scripting (XSS) vulnerability exploitable by attackers able to control test case class names in the JUnit resources processed by the plugin.

CVSS3: 5.4
2%
Низкий
почти 3 года назад
msrc логотип
CVE-2023-25761

Jenkins JUnit Plugin 1166.va_436e268e972 and earlier does not escape test case class names in JavaScript expressions, resulting in a stored cross-site scripting (XSS) vulnerability exploitable by attackers able to control test case class names in the JUnit resources processed by the plugin.

CVSS3: 5.4
2%
Низкий
4 месяца назад
github логотип
GHSA-ph74-8rgx-64c5

Cross-site Scripting in Jenkins JUnit Plugin

CVSS3: 5.4
2%
Низкий
почти 3 года назад

Уязвимостей на страницу