← back
CVE-2020-2244

CVE-2020-2244

EPSS 0.8%
Jenkins Build Failure Analyzer Plugin 1.27.0 and earlier does not escape matching text in a form validation response, resulting in a cross-site scripting (XSS) vulnerability exploitable by attackers able to provide console output for builds used to test build log indications.

Want to know if your infrastructure is exposed to this?

Talk to TrueHacking →