Количество 2
Количество 2
CVE-2023-32984
Jenkins TestNG Results Plugin 730.v4c5283037693 and earlier does not escape several values that are parsed from TestNG report files and displayed on the plugin's test information pages, resulting in a stored cross-site scripting (XSS) vulnerability exploitable by attackers able to provide a crafted TestNG report file.
GHSA-h3hg-r97v-5r9w
Jenkins TestNG Results Plugin Stored Cross-site Scripting vulnerability
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2023-32984 Jenkins TestNG Results Plugin 730.v4c5283037693 and earlier does not escape several values that are parsed from TestNG report files and displayed on the plugin's test information pages, resulting in a stored cross-site scripting (XSS) vulnerability exploitable by attackers able to provide a crafted TestNG report file. | CVSS3: 5.4 | 3% Низкий | больше 2 лет назад | |
GHSA-h3hg-r97v-5r9w Jenkins TestNG Results Plugin Stored Cross-site Scripting vulnerability | CVSS3: 5.4 | 3% Низкий | больше 2 лет назад |
Уязвимостей на страницу