← back
CVE-2017-2610

CVE-2017-2610

CVSS 5.4 MEDIUMEPSS 1.5%CWE-79
jenkins before versions 2.44, 2.32.2 is vulnerable to a persisted cross-site scripting in search suggestions due to improperly escaping users with less-than and greater-than characters in their names (SECURITY-388).
CVSS:3.0/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N
Affected products
[UNKNOWN] · jenkins

Want to know if your infrastructure is exposed to this?

Talk to TrueHacking →