A cross site scripting vulnerability in Jenkins Lockable Resources Plugin 2.4 and earlier allows attackers able to control resource names to inject arbitrary JavaScript in web pages rendered by the plugin.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: jenkins
Published: 2019-03-28T17:59:29
Updated: 2024-08-05T03:07:16.802Z
Reserved: 2019-03-28T00:00:00
Link: CVE-2019-1003042
Vulnrichment
No data.
NVD
Status : Modified
Published: 2019-03-28T18:29:00.343
Modified: 2024-11-21T04:17:47.800
Link: CVE-2019-1003042
Redhat