CVE-2020-2140
40Vexday Risk Score
Patch soon. It has a working public exploit.
ssvc Attendepss 76%
exploitation probability
76%top 1% of all CVEs
observed exploitation
nono source reports it
Jenkins Audit Trail Plugin 3.2 and earlier does not escape the error message for the URL Patterns field form validation, resulting in a reflected cross-site scripting vulnerability.
Affected products
Jenkins project · Jenkins Audit Trail Plugin