Description
Jenkins Pipeline Aggregator View Plugin 1.8 and earlier does not escape information shown on its view, resulting in a stored XSS vulnerability exploitable by attackers able to affects view content such as job display name or pipeline stage names.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2022-4342 | Jenkins Pipeline Aggregator View Plugin 1.8 and earlier does not escape information shown on its view, resulting in a stored XSS vulnerability exploitable by attackers able to affects view content such as job display name or pipeline stage names. |
Github GHSA |
GHSA-jf8x-943c-r4h6 | Jenkins Pipeline Aggregator View Plugin stored XSS vulnerability |
References
History
No history.
Status: PUBLISHED
Assigner: jenkins
Published:
Updated: 2024-08-05T01:17:41.024Z
Reserved: 2019-09-20T00:00:00.000Z
Link: CVE-2019-16564
No data.
Status : Modified
Published: 2019-12-17T15:15:20.193
Modified: 2024-11-21T04:30:50.040
Link: CVE-2019-16564
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD
Github GHSA